1a9771948SGleb Smirnoff /* $FreeBSD$ */ 2a9771948SGleb Smirnoff 3a9771948SGleb Smirnoff /* 4a9771948SGleb Smirnoff * Copyright (c) 2002 Michael Shalayeff. All rights reserved. 5a9771948SGleb Smirnoff * Copyright (c) 2003 Ryan McBride. All rights reserved. 6a9771948SGleb Smirnoff * 7a9771948SGleb Smirnoff * Redistribution and use in source and binary forms, with or without 8a9771948SGleb Smirnoff * modification, are permitted provided that the following conditions 9a9771948SGleb Smirnoff * are met: 10a9771948SGleb Smirnoff * 1. Redistributions of source code must retain the above copyright 11a9771948SGleb Smirnoff * notice, this list of conditions and the following disclaimer. 12a9771948SGleb Smirnoff * 2. Redistributions in binary form must reproduce the above copyright 13a9771948SGleb Smirnoff * notice, this list of conditions and the following disclaimer in the 14a9771948SGleb Smirnoff * documentation and/or other materials provided with the distribution. 15a9771948SGleb Smirnoff * 16a9771948SGleb Smirnoff * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR 17a9771948SGleb Smirnoff * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES 18a9771948SGleb Smirnoff * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. 19a9771948SGleb Smirnoff * IN NO EVENT SHALL THE AUTHOR OR HIS RELATIVES BE LIABLE FOR ANY DIRECT, 20a9771948SGleb Smirnoff * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES 21a9771948SGleb Smirnoff * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR 22a9771948SGleb Smirnoff * SERVICES; LOSS OF MIND, USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 23a9771948SGleb Smirnoff * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 24a9771948SGleb Smirnoff * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING 25a9771948SGleb Smirnoff * IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF 26a9771948SGleb Smirnoff * THE POSSIBILITY OF SUCH DAMAGE. 27a9771948SGleb Smirnoff */ 28a9771948SGleb Smirnoff 29a9771948SGleb Smirnoff #include "opt_carp.h" 30a9771948SGleb Smirnoff #include "opt_bpf.h" 31a9771948SGleb Smirnoff #include "opt_inet.h" 32a9771948SGleb Smirnoff #include "opt_inet6.h" 33a9771948SGleb Smirnoff 34a9771948SGleb Smirnoff #include <sys/types.h> 35a9771948SGleb Smirnoff #include <sys/param.h> 36a9771948SGleb Smirnoff #include <sys/systm.h> 37a9771948SGleb Smirnoff #include <sys/conf.h> 38a9771948SGleb Smirnoff #include <sys/kernel.h> 39a9771948SGleb Smirnoff #include <sys/limits.h> 40a9771948SGleb Smirnoff #include <sys/malloc.h> 41a9771948SGleb Smirnoff #include <sys/mbuf.h> 42a9771948SGleb Smirnoff #include <sys/module.h> 43a9771948SGleb Smirnoff #include <sys/time.h> 44a9771948SGleb Smirnoff #include <sys/proc.h> 45a9771948SGleb Smirnoff #include <sys/sysctl.h> 46a9771948SGleb Smirnoff #include <sys/syslog.h> 47a9771948SGleb Smirnoff #include <sys/signalvar.h> 48a9771948SGleb Smirnoff #include <sys/filio.h> 49a9771948SGleb Smirnoff #include <sys/sockio.h> 50a9771948SGleb Smirnoff 51a9771948SGleb Smirnoff #include <sys/socket.h> 52a9771948SGleb Smirnoff #include <sys/vnode.h> 53a9771948SGleb Smirnoff 54a9771948SGleb Smirnoff #include <machine/stdarg.h> 55a9771948SGleb Smirnoff 56a9771948SGleb Smirnoff #include <net/bpf.h> 57a9771948SGleb Smirnoff #include <net/ethernet.h> 58a9771948SGleb Smirnoff #include <net/fddi.h> 59a9771948SGleb Smirnoff #include <net/iso88025.h> 60a9771948SGleb Smirnoff #include <net/if.h> 61a9771948SGleb Smirnoff #include <net/if_clone.h> 62a9771948SGleb Smirnoff #include <net/if_types.h> 63a9771948SGleb Smirnoff #include <net/route.h> 64a9771948SGleb Smirnoff 65a9771948SGleb Smirnoff #ifdef INET 66a9771948SGleb Smirnoff #include <netinet/in.h> 67a9771948SGleb Smirnoff #include <netinet/in_var.h> 68a9771948SGleb Smirnoff #include <netinet/in_systm.h> 69a9771948SGleb Smirnoff #include <netinet/ip.h> 70a9771948SGleb Smirnoff #include <netinet/ip_var.h> 71a9771948SGleb Smirnoff #include <netinet/if_ether.h> 72a9771948SGleb Smirnoff #include <machine/in_cksum.h> 73a9771948SGleb Smirnoff #endif 74a9771948SGleb Smirnoff 75a9771948SGleb Smirnoff #ifdef INET6 76a9771948SGleb Smirnoff #include <netinet/icmp6.h> 77a9771948SGleb Smirnoff #include <netinet/ip6.h> 78a9771948SGleb Smirnoff #include <netinet6/ip6_var.h> 79a9771948SGleb Smirnoff #include <netinet6/nd6.h> 80a9771948SGleb Smirnoff #include <net/if_dl.h> 81a9771948SGleb Smirnoff #endif 82a9771948SGleb Smirnoff 83a9771948SGleb Smirnoff #include <crypto/sha1.h> 84a9771948SGleb Smirnoff #include <netinet/ip_carp.h> 85a9771948SGleb Smirnoff 86a9771948SGleb Smirnoff #define CARP_IFNAME "carp" 87a9771948SGleb Smirnoff static MALLOC_DEFINE(M_CARP, "CARP", "CARP interfaces"); 88a9771948SGleb Smirnoff SYSCTL_DECL(_net_inet_carp); 89a9771948SGleb Smirnoff 90a9771948SGleb Smirnoff struct carp_softc { 91a9771948SGleb Smirnoff struct arpcom sc_ac; /* Interface clue */ 92a9771948SGleb Smirnoff int if_flags; /* UP/DOWN */ 93a9771948SGleb Smirnoff struct ifnet *sc_ifp; /* Parent */ 94a9771948SGleb Smirnoff struct in_ifaddr *sc_ia; /* primary iface address */ 95a9771948SGleb Smirnoff struct ip_moptions sc_imo; 96a9771948SGleb Smirnoff #ifdef INET6 97a9771948SGleb Smirnoff struct in6_ifaddr *sc_ia6; /* primary iface address v6 */ 98a9771948SGleb Smirnoff struct ip6_moptions sc_im6o; 99a9771948SGleb Smirnoff #endif /* INET6 */ 100a9771948SGleb Smirnoff TAILQ_ENTRY(carp_softc) sc_list; 101a9771948SGleb Smirnoff 102a9771948SGleb Smirnoff enum { INIT = 0, BACKUP, MASTER } sc_state; 103a9771948SGleb Smirnoff 104a9771948SGleb Smirnoff int sc_flags_backup; 105a9771948SGleb Smirnoff int sc_suppress; 106a9771948SGleb Smirnoff 107a9771948SGleb Smirnoff int sc_sendad_errors; 108a9771948SGleb Smirnoff #define CARP_SENDAD_MAX_ERRORS 3 109a9771948SGleb Smirnoff int sc_sendad_success; 110a9771948SGleb Smirnoff #define CARP_SENDAD_MIN_SUCCESS 3 111a9771948SGleb Smirnoff 112a9771948SGleb Smirnoff int sc_vhid; 113a9771948SGleb Smirnoff int sc_advskew; 114a9771948SGleb Smirnoff int sc_naddrs; 115a9771948SGleb Smirnoff int sc_naddrs6; 116a9771948SGleb Smirnoff int sc_advbase; /* seconds */ 117a9771948SGleb Smirnoff int sc_init_counter; 118a9771948SGleb Smirnoff u_int64_t sc_counter; 119a9771948SGleb Smirnoff 120a9771948SGleb Smirnoff /* authentication */ 121a9771948SGleb Smirnoff #define CARP_HMAC_PAD 64 122a9771948SGleb Smirnoff unsigned char sc_key[CARP_KEY_LEN]; 123a9771948SGleb Smirnoff unsigned char sc_pad[CARP_HMAC_PAD]; 124a9771948SGleb Smirnoff SHA1_CTX sc_sha1; 125a9771948SGleb Smirnoff 126a9771948SGleb Smirnoff struct callout sc_ad_tmo; /* advertisement timeout */ 127a9771948SGleb Smirnoff struct callout sc_md_tmo; /* master down timeout */ 128a9771948SGleb Smirnoff struct callout sc_md6_tmo; /* master down timeout */ 129a9771948SGleb Smirnoff 130a9771948SGleb Smirnoff LIST_ENTRY(carp_softc) sc_next; /* Interface clue */ 131a9771948SGleb Smirnoff }; 132a9771948SGleb Smirnoff #define sc_if sc_ac.ac_if 133a9771948SGleb Smirnoff 134a9771948SGleb Smirnoff int carp_suppress_preempt = 0; 135a9771948SGleb Smirnoff int carp_opts[CARPCTL_MAXID] = { 0, 1, 0, 1, 0, 0 }; /* XXX for now */ 136a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_ALLOW, allow, CTLFLAG_RW, 137a9771948SGleb Smirnoff &carp_opts[CARPCTL_ALLOW], 0, "Accept incoming CARP packets"); 138a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_PREEMPT, preempt, CTLFLAG_RW, 139a9771948SGleb Smirnoff &carp_opts[CARPCTL_PREEMPT], 0, "high-priority backup preemption mode"); 140a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_LOG, log, CTLFLAG_RW, 141a9771948SGleb Smirnoff &carp_opts[CARPCTL_LOG], 0, "log bad carp packets"); 142a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_ARPBALANCE, arpbalance, CTLFLAG_RW, 143a9771948SGleb Smirnoff &carp_opts[CARPCTL_ARPBALANCE], 0, "balance arp responses"); 144a9771948SGleb Smirnoff 145a9771948SGleb Smirnoff struct carpstats carpstats; 146a9771948SGleb Smirnoff SYSCTL_STRUCT(_net_inet_carp, CARPCTL_STATS, stats, CTLFLAG_RW, 147a9771948SGleb Smirnoff &carpstats, carpstats, 148a9771948SGleb Smirnoff "CARP statistics (struct carpstats, netinet/ip_carp.h)"); 149a9771948SGleb Smirnoff 150a9771948SGleb Smirnoff struct carp_if { 151a9771948SGleb Smirnoff TAILQ_HEAD(, carp_softc) vhif_vrs; 152a9771948SGleb Smirnoff int vhif_nvrs; 153a9771948SGleb Smirnoff 154a9771948SGleb Smirnoff struct ifnet *vhif_ifp; 155a9771948SGleb Smirnoff struct mtx vhif_mtx; 156a9771948SGleb Smirnoff }; 157a9771948SGleb Smirnoff /* lock per carp_if queue */ 158a9771948SGleb Smirnoff #define CARP_LOCK_INIT(cif) mtx_init(&(cif)->vhif_mtx, "carp", \ 159a9771948SGleb Smirnoff NULL, MTX_DEF) 160a9771948SGleb Smirnoff #define CARP_LOCK_DESTROY(cif) mtx_destroy(&(cif->vhif_mtx)) 161a9771948SGleb Smirnoff #define CARP_LOCK_ASSERT(cif) mtx_assert(&(cif)->vhif_mtx, MA_OWNED) 162a9771948SGleb Smirnoff #define CARP_LOCK(cif) mtx_lock(&(cif)->vhif_mtx) 163a9771948SGleb Smirnoff #define CARP_UNLOCK(cif) mtx_unlock(&(cif)->vhif_mtx) 164a9771948SGleb Smirnoff 1651e9e6572SGleb Smirnoff #define CARP_LOG(...) \ 1661e9e6572SGleb Smirnoff if (carp_opts[CARPCTL_LOG] > 0) \ 1671e9e6572SGleb Smirnoff log(LOG_INFO, __VA_ARGS__); \ 1681e9e6572SGleb Smirnoff 1691e9e6572SGleb Smirnoff #define CARP_DEBUG(...) \ 1701e9e6572SGleb Smirnoff if (carp_opts[CARPCTL_LOG] > 1) \ 1711e9e6572SGleb Smirnoff log(LOG_DEBUG, __VA_ARGS__); \ 172a9771948SGleb Smirnoff 173a9771948SGleb Smirnoff void carp_hmac_prepare(struct carp_softc *); 174a9771948SGleb Smirnoff void carp_hmac_generate(struct carp_softc *, u_int32_t *, 175a9771948SGleb Smirnoff unsigned char *); 176a9771948SGleb Smirnoff int carp_hmac_verify(struct carp_softc *, u_int32_t *, 177a9771948SGleb Smirnoff unsigned char *); 178a9771948SGleb Smirnoff void carp_setroute(struct carp_softc *, int); 1791e9e6572SGleb Smirnoff void carp_input_c(struct mbuf *, struct carp_header *, sa_family_t); 180a9771948SGleb Smirnoff int carp_clone_create(struct if_clone *, int); 181a9771948SGleb Smirnoff void carp_clone_destroy(struct ifnet *); 182a9771948SGleb Smirnoff void carpdetach(struct carp_softc *); 183a9771948SGleb Smirnoff int carp_prepare_ad(struct mbuf *, struct carp_softc *, 184a9771948SGleb Smirnoff struct carp_header *); 185a9771948SGleb Smirnoff void carp_send_ad_all(void); 186a9771948SGleb Smirnoff void carp_send_ad(void *); 187a9771948SGleb Smirnoff void carp_send_arp(struct carp_softc *); 188a9771948SGleb Smirnoff void carp_master_down(void *); 189a9771948SGleb Smirnoff int carp_ioctl(struct ifnet *, u_long, caddr_t); 190a9771948SGleb Smirnoff static int carp_looutput(struct ifnet *, struct mbuf *, struct sockaddr *, 191a9771948SGleb Smirnoff struct rtentry *); 192a9771948SGleb Smirnoff void carp_start(struct ifnet *); 193a9771948SGleb Smirnoff void carp_setrun(struct carp_softc *, sa_family_t); 194a9771948SGleb Smirnoff void carp_set_state(struct carp_softc *, int); 195a9771948SGleb Smirnoff int carp_addrcount(struct carp_if *, struct in_ifaddr *, int); 196a9771948SGleb Smirnoff enum { CARP_COUNT_MASTER, CARP_COUNT_RUNNING }; 197a9771948SGleb Smirnoff 198a9771948SGleb Smirnoff int carp_set_addr(struct carp_softc *, struct sockaddr_in *); 199a9771948SGleb Smirnoff int carp_del_addr(struct carp_softc *, struct sockaddr_in *); 200a9771948SGleb Smirnoff #ifdef INET6 201a9771948SGleb Smirnoff void carp_send_na(struct carp_softc *); 202a9771948SGleb Smirnoff int carp_set_addr6(struct carp_softc *, struct sockaddr_in6 *); 203a9771948SGleb Smirnoff int carp_del_addr6(struct carp_softc *, struct sockaddr_in6 *); 204a9771948SGleb Smirnoff #endif 205a9771948SGleb Smirnoff 206a9771948SGleb Smirnoff static LIST_HEAD(, carp_softc) carpif_list; 207a9771948SGleb Smirnoff IFC_SIMPLE_DECLARE(carp, 0); 208a9771948SGleb Smirnoff 209a9771948SGleb Smirnoff static __inline u_int16_t 210a9771948SGleb Smirnoff carp_cksum(struct mbuf *m, int len) 211a9771948SGleb Smirnoff { 212a9771948SGleb Smirnoff return (in_cksum(m, len)); 213a9771948SGleb Smirnoff } 214a9771948SGleb Smirnoff 215a9771948SGleb Smirnoff void 216a9771948SGleb Smirnoff carp_hmac_prepare(struct carp_softc *sc) 217a9771948SGleb Smirnoff { 218a9771948SGleb Smirnoff u_int8_t version = CARP_VERSION, type = CARP_ADVERTISEMENT; 219a9771948SGleb Smirnoff u_int8_t vhid = sc->sc_vhid & 0xff; 220a9771948SGleb Smirnoff struct ifaddr *ifa; 221a9771948SGleb Smirnoff int i; 222a9771948SGleb Smirnoff #ifdef INET6 223a9771948SGleb Smirnoff struct in6_addr in6; 224a9771948SGleb Smirnoff #endif 225a9771948SGleb Smirnoff 226a9771948SGleb Smirnoff /* compute ipad from key */ 227a9771948SGleb Smirnoff bzero(sc->sc_pad, sizeof(sc->sc_pad)); 228a9771948SGleb Smirnoff bcopy(sc->sc_key, sc->sc_pad, sizeof(sc->sc_key)); 229a9771948SGleb Smirnoff for (i = 0; i < sizeof(sc->sc_pad); i++) 230a9771948SGleb Smirnoff sc->sc_pad[i] ^= 0x36; 231a9771948SGleb Smirnoff 232a9771948SGleb Smirnoff /* precompute first part of inner hash */ 233a9771948SGleb Smirnoff SHA1Init(&sc->sc_sha1); 234a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, sc->sc_pad, sizeof(sc->sc_pad)); 235a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&version, sizeof(version)); 236a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&type, sizeof(type)); 237a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&vhid, sizeof(vhid)); 238a9771948SGleb Smirnoff #ifdef INET 239a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 240a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET) 241a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, 242a9771948SGleb Smirnoff (void *)&ifatoia(ifa)->ia_addr.sin_addr.s_addr, 243a9771948SGleb Smirnoff sizeof(struct in_addr)); 244a9771948SGleb Smirnoff } 245a9771948SGleb Smirnoff #endif /* INET */ 246a9771948SGleb Smirnoff #ifdef INET6 247a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 248a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET6) { 249a9771948SGleb Smirnoff in6 = ifatoia6(ifa)->ia_addr.sin6_addr; 250a9771948SGleb Smirnoff if (IN6_IS_ADDR_LINKLOCAL(&in6)) 251a9771948SGleb Smirnoff in6.s6_addr16[1] = 0; 252a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&in6, sizeof(in6)); 253a9771948SGleb Smirnoff } 254a9771948SGleb Smirnoff } 255a9771948SGleb Smirnoff #endif /* INET6 */ 256a9771948SGleb Smirnoff 257a9771948SGleb Smirnoff /* convert ipad to opad */ 258a9771948SGleb Smirnoff for (i = 0; i < sizeof(sc->sc_pad); i++) 259a9771948SGleb Smirnoff sc->sc_pad[i] ^= 0x36 ^ 0x5c; 260a9771948SGleb Smirnoff } 261a9771948SGleb Smirnoff 262a9771948SGleb Smirnoff void 263a9771948SGleb Smirnoff carp_hmac_generate(struct carp_softc *sc, u_int32_t counter[2], 264a9771948SGleb Smirnoff unsigned char md[20]) 265a9771948SGleb Smirnoff { 266a9771948SGleb Smirnoff SHA1_CTX sha1ctx; 267a9771948SGleb Smirnoff 268a9771948SGleb Smirnoff /* fetch first half of inner hash */ 269a9771948SGleb Smirnoff bcopy(&sc->sc_sha1, &sha1ctx, sizeof(sha1ctx)); 270a9771948SGleb Smirnoff 271a9771948SGleb Smirnoff SHA1Update(&sha1ctx, (void *)counter, sizeof(sc->sc_counter)); 272a9771948SGleb Smirnoff SHA1Final(md, &sha1ctx); 273a9771948SGleb Smirnoff 274a9771948SGleb Smirnoff /* outer hash */ 275a9771948SGleb Smirnoff SHA1Init(&sha1ctx); 276a9771948SGleb Smirnoff SHA1Update(&sha1ctx, sc->sc_pad, sizeof(sc->sc_pad)); 277a9771948SGleb Smirnoff SHA1Update(&sha1ctx, md, 20); 278a9771948SGleb Smirnoff SHA1Final(md, &sha1ctx); 279a9771948SGleb Smirnoff } 280a9771948SGleb Smirnoff 281a9771948SGleb Smirnoff int 282a9771948SGleb Smirnoff carp_hmac_verify(struct carp_softc *sc, u_int32_t counter[2], 283a9771948SGleb Smirnoff unsigned char md[20]) 284a9771948SGleb Smirnoff { 285a9771948SGleb Smirnoff unsigned char md2[20]; 286a9771948SGleb Smirnoff 287a9771948SGleb Smirnoff carp_hmac_generate(sc, counter, md2); 288a9771948SGleb Smirnoff 289a9771948SGleb Smirnoff return (bcmp(md, md2, sizeof(md2))); 290a9771948SGleb Smirnoff } 291a9771948SGleb Smirnoff 292a9771948SGleb Smirnoff void 293a9771948SGleb Smirnoff carp_setroute(struct carp_softc *sc, int cmd) 294a9771948SGleb Smirnoff { 295a9771948SGleb Smirnoff struct ifaddr *ifa; 296a9771948SGleb Smirnoff int s; 297a9771948SGleb Smirnoff 298a9771948SGleb Smirnoff s = splnet(); 299a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 300a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET && sc->sc_ifp != NULL) { 301a9771948SGleb Smirnoff int count = carp_addrcount( 302a9771948SGleb Smirnoff (struct carp_if *)sc->sc_ifp->if_carp, 303a9771948SGleb Smirnoff ifatoia(ifa), CARP_COUNT_MASTER); 304a9771948SGleb Smirnoff 305a9771948SGleb Smirnoff if ((cmd == RTM_ADD && count == 1) || 306a9771948SGleb Smirnoff (cmd == RTM_DELETE && count == 0)) 307a9771948SGleb Smirnoff rtinit(ifa, cmd, RTF_UP | RTF_HOST); 308a9771948SGleb Smirnoff } 309a9771948SGleb Smirnoff #ifdef INET6 310a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET6) { 311a9771948SGleb Smirnoff if (cmd == RTM_ADD) 312a9771948SGleb Smirnoff in6_ifaddloop(ifa); 313a9771948SGleb Smirnoff else 314a9771948SGleb Smirnoff in6_ifremloop(ifa); 315a9771948SGleb Smirnoff } 316a9771948SGleb Smirnoff #endif /* INET6 */ 317a9771948SGleb Smirnoff } 318a9771948SGleb Smirnoff splx(s); 319a9771948SGleb Smirnoff } 320a9771948SGleb Smirnoff 321a9771948SGleb Smirnoff int 322a9771948SGleb Smirnoff carp_clone_create(struct if_clone *ifc, int unit) 323a9771948SGleb Smirnoff { 324a9771948SGleb Smirnoff 325a9771948SGleb Smirnoff struct carp_softc *sc; 326a9771948SGleb Smirnoff struct ifnet *ifp; 327a9771948SGleb Smirnoff 328a9771948SGleb Smirnoff MALLOC(sc, struct carp_softc *, sizeof(*sc), M_CARP, M_WAITOK|M_ZERO); 329a9771948SGleb Smirnoff 330a9771948SGleb Smirnoff sc->sc_flags_backup = 0; 331a9771948SGleb Smirnoff sc->sc_suppress = 0; 332a9771948SGleb Smirnoff sc->sc_advbase = CARP_DFLTINTV; 333a9771948SGleb Smirnoff sc->sc_vhid = -1; /* required setting */ 334a9771948SGleb Smirnoff sc->sc_advskew = 0; 335a9771948SGleb Smirnoff sc->sc_init_counter = 1; 336a9771948SGleb Smirnoff sc->sc_naddrs = sc->sc_naddrs6 = 0; /* M_ZERO? */ 337a9771948SGleb Smirnoff #ifdef INET6 338a9771948SGleb Smirnoff sc->sc_im6o.im6o_multicast_hlim = CARP_DFLTTL; 339a9771948SGleb Smirnoff #endif 340a9771948SGleb Smirnoff 341a9771948SGleb Smirnoff callout_init(&sc->sc_ad_tmo, 0); 342a9771948SGleb Smirnoff callout_init(&sc->sc_md_tmo, 0); 343a9771948SGleb Smirnoff callout_init(&sc->sc_md6_tmo, 0); 344a9771948SGleb Smirnoff 345a9771948SGleb Smirnoff ifp = &sc->sc_if; 346a9771948SGleb Smirnoff ifp->if_softc = sc; 347a9771948SGleb Smirnoff if_initname(ifp, CARP_IFNAME, unit); 348a9771948SGleb Smirnoff ifp->if_mtu = ETHERMTU; 349a9771948SGleb Smirnoff ifp->if_flags = 0; 350a9771948SGleb Smirnoff ifp->if_ioctl = carp_ioctl; 351a9771948SGleb Smirnoff ifp->if_output = carp_looutput; 352a9771948SGleb Smirnoff ifp->if_start = carp_start; 353a9771948SGleb Smirnoff ifp->if_type = IFT_CARP; 354a9771948SGleb Smirnoff ifp->if_snd.ifq_maxlen = ifqmaxlen; 355a9771948SGleb Smirnoff ifp->if_hdrlen = 0; 356a9771948SGleb Smirnoff if_attach(ifp); 357a9771948SGleb Smirnoff LIST_INSERT_HEAD(&carpif_list, sc, sc_next); 358a9771948SGleb Smirnoff bpfattach(&sc->sc_if, DLT_LOOP, sizeof(u_int32_t)); 359a9771948SGleb Smirnoff return (0); 360a9771948SGleb Smirnoff } 361a9771948SGleb Smirnoff 362a9771948SGleb Smirnoff void 363a9771948SGleb Smirnoff carp_clone_destroy(struct ifnet *ifp) 364a9771948SGleb Smirnoff { 365a9771948SGleb Smirnoff struct carp_softc *sc = ifp->if_softc; 366a9771948SGleb Smirnoff struct carp_if *cif; 367a9771948SGleb Smirnoff struct ip_moptions *imo = &sc->sc_imo; 368a9771948SGleb Smirnoff #ifdef INET6 369a9771948SGleb Smirnoff struct ip6_moptions *im6o = &sc->sc_im6o; 370a9771948SGleb Smirnoff #endif 371a9771948SGleb Smirnoff 372a9771948SGleb Smirnoff /* carpdetach(sc); */ 373a9771948SGleb Smirnoff 374a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 375a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 376a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 377a9771948SGleb Smirnoff 378a9771948SGleb Smirnoff if (imo->imo_num_memberships) { 379a9771948SGleb Smirnoff in_delmulti(imo->imo_membership[--imo->imo_num_memberships]); 380a9771948SGleb Smirnoff imo->imo_multicast_ifp = NULL; 381a9771948SGleb Smirnoff } 382a9771948SGleb Smirnoff #ifdef INET6 383a9771948SGleb Smirnoff while (!LIST_EMPTY(&im6o->im6o_memberships)) { 384a9771948SGleb Smirnoff struct in6_multi_mship *imm = 385a9771948SGleb Smirnoff LIST_FIRST(&im6o->im6o_memberships); 386a9771948SGleb Smirnoff LIST_REMOVE(imm, i6mm_chain); 387a9771948SGleb Smirnoff in6_leavegroup(imm); 388a9771948SGleb Smirnoff } 389a9771948SGleb Smirnoff im6o->im6o_multicast_ifp = NULL; 390a9771948SGleb Smirnoff #endif 391a9771948SGleb Smirnoff 392a9771948SGleb Smirnoff /* Remove ourself from parents if_carp queue */ 393a9771948SGleb Smirnoff if (sc->sc_ifp && (cif = sc->sc_ifp->if_carp)) { 394a9771948SGleb Smirnoff CARP_LOCK(cif); 395a9771948SGleb Smirnoff TAILQ_REMOVE(&cif->vhif_vrs, sc, sc_list); 396a9771948SGleb Smirnoff if (!--cif->vhif_nvrs) { 397a9771948SGleb Smirnoff sc->sc_ifp->if_carp = NULL; 398a9771948SGleb Smirnoff CARP_LOCK_DESTROY(cif); 399a9771948SGleb Smirnoff FREE(cif, M_CARP); 40067df4214SGleb Smirnoff ifpromisc(sc->sc_ifp, 0); 401a9771948SGleb Smirnoff } else { 402a9771948SGleb Smirnoff CARP_UNLOCK(cif); 403a9771948SGleb Smirnoff } 404a9771948SGleb Smirnoff } 405a9771948SGleb Smirnoff 406a9771948SGleb Smirnoff bpfdetach(ifp); 407a9771948SGleb Smirnoff if_detach(ifp); 408a9771948SGleb Smirnoff LIST_REMOVE(sc, sc_next); 409a9771948SGleb Smirnoff free(sc, M_CARP); 410a9771948SGleb Smirnoff } 411a9771948SGleb Smirnoff 412a9771948SGleb Smirnoff /* 413a9771948SGleb Smirnoff * process input packet. 414a9771948SGleb Smirnoff * we have rearranged checks order compared to the rfc, 415a9771948SGleb Smirnoff * but it seems more efficient this way or not possible otherwise. 416a9771948SGleb Smirnoff */ 417a9771948SGleb Smirnoff void 418a9771948SGleb Smirnoff carp_input(struct mbuf *m, int hlen) 419a9771948SGleb Smirnoff { 420a9771948SGleb Smirnoff struct ip *ip = mtod(m, struct ip *); 421a9771948SGleb Smirnoff struct carp_header *ch; 422a9771948SGleb Smirnoff int iplen, len; 423a9771948SGleb Smirnoff 424a9771948SGleb Smirnoff carpstats.carps_ipackets++; 425a9771948SGleb Smirnoff 426a9771948SGleb Smirnoff if (!carp_opts[CARPCTL_ALLOW]) { 427a9771948SGleb Smirnoff m_freem(m); 428a9771948SGleb Smirnoff return; 429a9771948SGleb Smirnoff } 430a9771948SGleb Smirnoff 431a9771948SGleb Smirnoff /* check if received on a valid carp interface */ 432a9771948SGleb Smirnoff if (m->m_pkthdr.rcvif->if_carp == NULL) { 433a9771948SGleb Smirnoff carpstats.carps_badif++; 4341e9e6572SGleb Smirnoff CARP_LOG("carp_input: packet received on non-carp interface: %s", 4351e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 436a9771948SGleb Smirnoff m_freem(m); 437a9771948SGleb Smirnoff return; 438a9771948SGleb Smirnoff } 439a9771948SGleb Smirnoff 440a9771948SGleb Smirnoff /* verify that the IP TTL is 255. */ 441a9771948SGleb Smirnoff if (ip->ip_ttl != CARP_DFLTTL) { 442a9771948SGleb Smirnoff carpstats.carps_badttl++; 4431e9e6572SGleb Smirnoff CARP_LOG("carp_input: received ttl %d != 255i on %s", 4441e9e6572SGleb Smirnoff ip->ip_ttl, 4451e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 446a9771948SGleb Smirnoff m_freem(m); 447a9771948SGleb Smirnoff return; 448a9771948SGleb Smirnoff } 449a9771948SGleb Smirnoff 450a9771948SGleb Smirnoff iplen = ip->ip_hl << 2; 451a9771948SGleb Smirnoff 452a9771948SGleb Smirnoff if (m->m_pkthdr.len < iplen + sizeof(*ch)) { 453a9771948SGleb Smirnoff carpstats.carps_badlen++; 4541e9e6572SGleb Smirnoff CARP_LOG("carp_input: received len %zd < " 4551e9e6572SGleb Smirnoff "sizeof(struct carp_header)", 4561e9e6572SGleb Smirnoff m->m_len - sizeof(struct ip)); 457a9771948SGleb Smirnoff m_freem(m); 458a9771948SGleb Smirnoff return; 459a9771948SGleb Smirnoff } 460a9771948SGleb Smirnoff 461a9771948SGleb Smirnoff if (iplen + sizeof(*ch) < m->m_len) { 462a9771948SGleb Smirnoff if ((m = m_pullup(m, iplen + sizeof(*ch))) == NULL) { 463a9771948SGleb Smirnoff carpstats.carps_hdrops++; 4641e9e6572SGleb Smirnoff CARP_LOG("carp_input: pullup failed"); 465a9771948SGleb Smirnoff return; 466a9771948SGleb Smirnoff } 467a9771948SGleb Smirnoff ip = mtod(m, struct ip *); 468a9771948SGleb Smirnoff } 469a9771948SGleb Smirnoff ch = (struct carp_header *)((char *)ip + iplen); 470a9771948SGleb Smirnoff 471a9771948SGleb Smirnoff /* 472a9771948SGleb Smirnoff * verify that the received packet length is 473a9771948SGleb Smirnoff * equal to the CARP header 474a9771948SGleb Smirnoff */ 475a9771948SGleb Smirnoff len = iplen + sizeof(*ch); 476a9771948SGleb Smirnoff if (len > m->m_pkthdr.len) { 477a9771948SGleb Smirnoff carpstats.carps_badlen++; 4781e9e6572SGleb Smirnoff CARP_LOG("carp_input: packet too short %d on %s", 4791e9e6572SGleb Smirnoff m->m_pkthdr.len, 4801e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 481a9771948SGleb Smirnoff m_freem(m); 482a9771948SGleb Smirnoff return; 483a9771948SGleb Smirnoff } 484a9771948SGleb Smirnoff 485a9771948SGleb Smirnoff if ((m = m_pullup(m, len)) == NULL) { 486a9771948SGleb Smirnoff carpstats.carps_hdrops++; 487a9771948SGleb Smirnoff return; 488a9771948SGleb Smirnoff } 489a9771948SGleb Smirnoff ip = mtod(m, struct ip *); 490a9771948SGleb Smirnoff ch = (struct carp_header *)((char *)ip + iplen); 491a9771948SGleb Smirnoff 492a9771948SGleb Smirnoff /* verify the CARP checksum */ 493a9771948SGleb Smirnoff m->m_data += iplen; 494a9771948SGleb Smirnoff if (carp_cksum(m, len - iplen)) { 495a9771948SGleb Smirnoff carpstats.carps_badsum++; 4961e9e6572SGleb Smirnoff CARP_LOG("carp_input: checksum failed on %s", 4971e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 498a9771948SGleb Smirnoff m_freem(m); 499a9771948SGleb Smirnoff return; 500a9771948SGleb Smirnoff } 501a9771948SGleb Smirnoff m->m_data -= iplen; 502a9771948SGleb Smirnoff 5031e9e6572SGleb Smirnoff carp_input_c(m, ch, AF_INET); 504a9771948SGleb Smirnoff } 505a9771948SGleb Smirnoff 506a9771948SGleb Smirnoff #ifdef INET6 507a9771948SGleb Smirnoff int 508a9771948SGleb Smirnoff carp6_input(struct mbuf **mp, int *offp, int proto) 509a9771948SGleb Smirnoff { 510a9771948SGleb Smirnoff struct mbuf *m = *mp; 511a9771948SGleb Smirnoff struct ip6_hdr *ip6 = mtod(m, struct ip6_hdr *); 512a9771948SGleb Smirnoff struct carp_header *ch; 513a9771948SGleb Smirnoff u_int len; 514a9771948SGleb Smirnoff 515a9771948SGleb Smirnoff carpstats.carps_ipackets6++; 516a9771948SGleb Smirnoff 517a9771948SGleb Smirnoff if (!carp_opts[CARPCTL_ALLOW]) { 518a9771948SGleb Smirnoff m_freem(m); 519a9771948SGleb Smirnoff return (IPPROTO_DONE); 520a9771948SGleb Smirnoff } 521a9771948SGleb Smirnoff 522a9771948SGleb Smirnoff /* check if received on a valid carp interface */ 523a9771948SGleb Smirnoff if (m->m_pkthdr.rcvif->if_carp == NULL) { 524a9771948SGleb Smirnoff carpstats.carps_badif++; 5251e9e6572SGleb Smirnoff CARP_LOG("carp6_input: packet received on non-carp " 5261e9e6572SGleb Smirnoff "interface: %s", 5271e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 528a9771948SGleb Smirnoff m_freem(m); 529a9771948SGleb Smirnoff return (IPPROTO_DONE); 530a9771948SGleb Smirnoff } 531a9771948SGleb Smirnoff 532a9771948SGleb Smirnoff /* verify that the IP TTL is 255 */ 533a9771948SGleb Smirnoff if (ip6->ip6_hlim != CARP_DFLTTL) { 534a9771948SGleb Smirnoff carpstats.carps_badttl++; 5351e9e6572SGleb Smirnoff CARP_LOG("carp6_input: received ttl %d != 255 on %s", 5361e9e6572SGleb Smirnoff ip6->ip6_hlim, 5371e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 538a9771948SGleb Smirnoff m_freem(m); 539a9771948SGleb Smirnoff return (IPPROTO_DONE); 540a9771948SGleb Smirnoff } 541a9771948SGleb Smirnoff 542a9771948SGleb Smirnoff /* verify that we have a complete carp packet */ 543a9771948SGleb Smirnoff len = m->m_len; 544a9771948SGleb Smirnoff IP6_EXTHDR_GET(ch, struct carp_header *, m, *offp, sizeof(*ch)); 545a9771948SGleb Smirnoff if (ch == NULL) { 546a9771948SGleb Smirnoff carpstats.carps_badlen++; 5471e9e6572SGleb Smirnoff CARP_LOG("carp6_input: packet size %u too small on %s", len, 5481e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 549a9771948SGleb Smirnoff return (IPPROTO_DONE); 550a9771948SGleb Smirnoff } 551a9771948SGleb Smirnoff 552a9771948SGleb Smirnoff 553a9771948SGleb Smirnoff /* verify the CARP checksum */ 554a9771948SGleb Smirnoff m->m_data += *offp; 555a9771948SGleb Smirnoff if (carp_cksum(m, sizeof(*ch))) { 556a9771948SGleb Smirnoff carpstats.carps_badsum++; 5571e9e6572SGleb Smirnoff CARP_LOG("carp6_input: checksum failed, on %s", 5581e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 559a9771948SGleb Smirnoff m_freem(m); 560a9771948SGleb Smirnoff return (IPPROTO_DONE); 561a9771948SGleb Smirnoff } 562a9771948SGleb Smirnoff m->m_data -= *offp; 563a9771948SGleb Smirnoff 5641e9e6572SGleb Smirnoff carp_input_c(m, ch, AF_INET6); 565a9771948SGleb Smirnoff return (IPPROTO_DONE); 566a9771948SGleb Smirnoff } 567a9771948SGleb Smirnoff #endif /* INET6 */ 568a9771948SGleb Smirnoff 569a9771948SGleb Smirnoff void 5701e9e6572SGleb Smirnoff carp_input_c(struct mbuf *m, struct carp_header *ch, sa_family_t af) 571a9771948SGleb Smirnoff { 572a9771948SGleb Smirnoff struct ifnet *ifp = m->m_pkthdr.rcvif; 5731e9e6572SGleb Smirnoff struct carp_softc *sc; 574a9771948SGleb Smirnoff u_int64_t tmp_counter; 575a9771948SGleb Smirnoff struct timeval sc_tv, ch_tv; 576a9771948SGleb Smirnoff 577a9771948SGleb Smirnoff /* verify that the VHID is valid on the receiving interface */ 578a9771948SGleb Smirnoff CARP_LOCK(ifp->if_carp); 579a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &((struct carp_if *)ifp->if_carp)->vhif_vrs, sc_list) 580a9771948SGleb Smirnoff if (sc->sc_vhid == ch->carp_vhid) 581a9771948SGleb Smirnoff break; 582a9771948SGleb Smirnoff CARP_UNLOCK(ifp->if_carp); 583a9771948SGleb Smirnoff if (!sc || (sc->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) != 584a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) { 585a9771948SGleb Smirnoff carpstats.carps_badvhid++; 586a9771948SGleb Smirnoff m_freem(m); 587a9771948SGleb Smirnoff return; 588a9771948SGleb Smirnoff } 589a9771948SGleb Smirnoff 590a9771948SGleb Smirnoff getmicrotime(&sc->sc_if.if_lastchange); 591a9771948SGleb Smirnoff sc->sc_if.if_ipackets++; 592a9771948SGleb Smirnoff sc->sc_if.if_ibytes += m->m_pkthdr.len; 593a9771948SGleb Smirnoff 594a9771948SGleb Smirnoff if (sc->sc_if.if_bpf) { 595a9771948SGleb Smirnoff /* 596a9771948SGleb Smirnoff * We need to prepend the address family as 597a9771948SGleb Smirnoff * a four byte field. Cons up a dummy header 598a9771948SGleb Smirnoff * to pacify bpf. This is safe because bpf 599a9771948SGleb Smirnoff * will only read from the mbuf (i.e., it won't 600a9771948SGleb Smirnoff * try to free it or keep a pointer to it). 601a9771948SGleb Smirnoff */ 602a9771948SGleb Smirnoff struct mbuf m0; 603a9771948SGleb Smirnoff struct ip *ip = mtod(m, struct ip *); 604a9771948SGleb Smirnoff u_int32_t maf = htonl(af); 605a9771948SGleb Smirnoff 606a9771948SGleb Smirnoff m0.m_next = m; 607a9771948SGleb Smirnoff m0.m_len = sizeof(maf); 608a9771948SGleb Smirnoff m0.m_data = (char *)&maf; 609a9771948SGleb Smirnoff /* BPF wants net byte order */ 610a9771948SGleb Smirnoff ip->ip_len = htonl(ip->ip_len); 611a9771948SGleb Smirnoff ip->ip_off = htonl(ip->ip_off); 612a9771948SGleb Smirnoff BPF_MTAP(&sc->sc_if, &m0); 613a9771948SGleb Smirnoff } 614a9771948SGleb Smirnoff 615a9771948SGleb Smirnoff /* verify the CARP version. */ 616a9771948SGleb Smirnoff if (ch->carp_version != CARP_VERSION) { 617a9771948SGleb Smirnoff carpstats.carps_badver++; 618a9771948SGleb Smirnoff sc->sc_if.if_ierrors++; 6191e9e6572SGleb Smirnoff CARP_LOG("%s; invalid version %d", 6201e9e6572SGleb Smirnoff sc->sc_if.if_xname, 6211e9e6572SGleb Smirnoff ch->carp_version); 622a9771948SGleb Smirnoff m_freem(m); 623a9771948SGleb Smirnoff return; 624a9771948SGleb Smirnoff } 625a9771948SGleb Smirnoff 626a9771948SGleb Smirnoff /* verify the hash */ 627a9771948SGleb Smirnoff if (carp_hmac_verify(sc, ch->carp_counter, ch->carp_md)) { 628a9771948SGleb Smirnoff carpstats.carps_badauth++; 629a9771948SGleb Smirnoff sc->sc_if.if_ierrors++; 6301e9e6572SGleb Smirnoff CARP_LOG("%s: incorrect hash", sc->sc_if.if_xname); 631a9771948SGleb Smirnoff m_freem(m); 632a9771948SGleb Smirnoff return; 633a9771948SGleb Smirnoff } 634a9771948SGleb Smirnoff 635a9771948SGleb Smirnoff tmp_counter = ntohl(ch->carp_counter[0]); 636a9771948SGleb Smirnoff tmp_counter = tmp_counter<<32; 637a9771948SGleb Smirnoff tmp_counter += ntohl(ch->carp_counter[1]); 638a9771948SGleb Smirnoff 639a9771948SGleb Smirnoff /* XXX Replay protection goes here */ 640a9771948SGleb Smirnoff 641a9771948SGleb Smirnoff sc->sc_init_counter = 0; 642a9771948SGleb Smirnoff sc->sc_counter = tmp_counter; 643a9771948SGleb Smirnoff 644a9771948SGleb Smirnoff sc_tv.tv_sec = sc->sc_advbase; 645a9771948SGleb Smirnoff if (carp_suppress_preempt && sc->sc_advskew < 240) 646a9771948SGleb Smirnoff sc_tv.tv_usec = 240 * 1000000 / 256; 647a9771948SGleb Smirnoff else 648a9771948SGleb Smirnoff sc_tv.tv_usec = sc->sc_advskew * 1000000 / 256; 649a9771948SGleb Smirnoff ch_tv.tv_sec = ch->carp_advbase; 650a9771948SGleb Smirnoff ch_tv.tv_usec = ch->carp_advskew * 1000000 / 256; 651a9771948SGleb Smirnoff 652a9771948SGleb Smirnoff switch (sc->sc_state) { 653a9771948SGleb Smirnoff case INIT: 654a9771948SGleb Smirnoff break; 655a9771948SGleb Smirnoff case MASTER: 656a9771948SGleb Smirnoff /* 657a9771948SGleb Smirnoff * If we receive an advertisement from a master who's going to 658a9771948SGleb Smirnoff * be more frequent than us, go into BACKUP state. 659a9771948SGleb Smirnoff */ 660a9771948SGleb Smirnoff if (timevalcmp(&sc_tv, &ch_tv, >) || 661a9771948SGleb Smirnoff timevalcmp(&sc_tv, &ch_tv, ==)) { 662a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 6631e9e6572SGleb Smirnoff CARP_DEBUG("%s: MASTER -> BACKUP " 6641e9e6572SGleb Smirnoff "(more frequent advertisement received)", 6651e9e6572SGleb Smirnoff sc->sc_if.if_xname); 666a9771948SGleb Smirnoff carp_set_state(sc, BACKUP); 667a9771948SGleb Smirnoff carp_setrun(sc, 0); 668a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 669a9771948SGleb Smirnoff } 670a9771948SGleb Smirnoff break; 671a9771948SGleb Smirnoff case BACKUP: 672a9771948SGleb Smirnoff /* 673a9771948SGleb Smirnoff * If we're pre-empting masters who advertise slower than us, 674a9771948SGleb Smirnoff * and this one claims to be slower, treat him as down. 675a9771948SGleb Smirnoff */ 676a9771948SGleb Smirnoff if (carp_opts[CARPCTL_PREEMPT] && 677a9771948SGleb Smirnoff timevalcmp(&sc_tv, &ch_tv, <)) { 6781e9e6572SGleb Smirnoff CARP_DEBUG("%s: BACKUP -> MASTER " 6791e9e6572SGleb Smirnoff "(preempting a slower master)", 6801e9e6572SGleb Smirnoff sc->sc_if.if_xname); 681a9771948SGleb Smirnoff carp_master_down(sc); 682a9771948SGleb Smirnoff break; 683a9771948SGleb Smirnoff } 684a9771948SGleb Smirnoff 685a9771948SGleb Smirnoff /* 686a9771948SGleb Smirnoff * If the master is going to advertise at such a low frequency 687a9771948SGleb Smirnoff * that he's guaranteed to time out, we'd might as well just 688a9771948SGleb Smirnoff * treat him as timed out now. 689a9771948SGleb Smirnoff */ 690a9771948SGleb Smirnoff sc_tv.tv_sec = sc->sc_advbase * 3; 691a9771948SGleb Smirnoff if (timevalcmp(&sc_tv, &ch_tv, <)) { 6921e9e6572SGleb Smirnoff CARP_DEBUG("%s: BACKUP -> MASTER " 6931e9e6572SGleb Smirnoff "(master timed out)", 6941e9e6572SGleb Smirnoff sc->sc_if.if_xname); 695a9771948SGleb Smirnoff carp_master_down(sc); 696a9771948SGleb Smirnoff break; 697a9771948SGleb Smirnoff } 698a9771948SGleb Smirnoff 699a9771948SGleb Smirnoff /* 700a9771948SGleb Smirnoff * Otherwise, we reset the counter and wait for the next 701a9771948SGleb Smirnoff * advertisement. 702a9771948SGleb Smirnoff */ 703a9771948SGleb Smirnoff carp_setrun(sc, af); 704a9771948SGleb Smirnoff break; 705a9771948SGleb Smirnoff } 706a9771948SGleb Smirnoff 707a9771948SGleb Smirnoff m_freem(m); 708a9771948SGleb Smirnoff return; 709a9771948SGleb Smirnoff } 710a9771948SGleb Smirnoff 711a9771948SGleb Smirnoff void 712a9771948SGleb Smirnoff carpdetach(struct carp_softc *sc) 713a9771948SGleb Smirnoff { 714a9771948SGleb Smirnoff struct ifaddr *ifa; 715a9771948SGleb Smirnoff 716a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 717a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 718a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 719a9771948SGleb Smirnoff 720a9771948SGleb Smirnoff while ((ifa = TAILQ_FIRST(&sc->sc_if.if_addrlist)) != NULL) 721a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET) { 722a9771948SGleb Smirnoff struct in_ifaddr *ia = ifatoia(ifa); 723a9771948SGleb Smirnoff 724a9771948SGleb Smirnoff carp_del_addr(sc, &ia->ia_addr); 725a9771948SGleb Smirnoff 726a9771948SGleb Smirnoff /* ripped screaming from in_control(SIOCDIFADDR) */ 727a9771948SGleb Smirnoff in_ifscrub(&sc->sc_if, ia); 728a9771948SGleb Smirnoff TAILQ_REMOVE(&sc->sc_if.if_addrlist, ifa, ifa_link); 729a9771948SGleb Smirnoff TAILQ_REMOVE(&in_ifaddrhead, ia, ia_link); 730a9771948SGleb Smirnoff IFAFREE((&ia->ia_ifa)); 731a9771948SGleb Smirnoff } 732a9771948SGleb Smirnoff } 733a9771948SGleb Smirnoff 734a9771948SGleb Smirnoff /* Detach an interface from the carp. */ 735a9771948SGleb Smirnoff void 736a9771948SGleb Smirnoff carp_ifdetach(struct ifnet *ifp) 737a9771948SGleb Smirnoff { 738a9771948SGleb Smirnoff struct carp_softc *sc; 739a9771948SGleb Smirnoff struct carp_if *cif = (struct carp_if *)ifp->if_carp; 740a9771948SGleb Smirnoff 741a9771948SGleb Smirnoff CARP_LOCK(cif); 742a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &cif->vhif_vrs, sc_list) 743a9771948SGleb Smirnoff carpdetach(sc); 744a9771948SGleb Smirnoff CARP_UNLOCK(cif); 745a9771948SGleb Smirnoff } 746a9771948SGleb Smirnoff 747a9771948SGleb Smirnoff int 748a9771948SGleb Smirnoff carp_prepare_ad(struct mbuf *m, struct carp_softc *sc, struct carp_header *ch) 749a9771948SGleb Smirnoff { 750a9771948SGleb Smirnoff struct m_tag *mtag; 751a9771948SGleb Smirnoff struct ifnet *ifp = &sc->sc_if; 752a9771948SGleb Smirnoff 753a9771948SGleb Smirnoff if (sc->sc_init_counter) { 754a9771948SGleb Smirnoff /* this could also be seconds since unix epoch */ 755a9771948SGleb Smirnoff sc->sc_counter = arc4random(); 756a9771948SGleb Smirnoff sc->sc_counter = sc->sc_counter << 32; 757a9771948SGleb Smirnoff sc->sc_counter += arc4random(); 758a9771948SGleb Smirnoff } else 759a9771948SGleb Smirnoff sc->sc_counter++; 760a9771948SGleb Smirnoff 761a9771948SGleb Smirnoff ch->carp_counter[0] = htonl((sc->sc_counter>>32)&0xffffffff); 762a9771948SGleb Smirnoff ch->carp_counter[1] = htonl(sc->sc_counter&0xffffffff); 763a9771948SGleb Smirnoff 764a9771948SGleb Smirnoff carp_hmac_generate(sc, ch->carp_counter, ch->carp_md); 765a9771948SGleb Smirnoff 766a9771948SGleb Smirnoff /* Tag packet for carp_output */ 767a9771948SGleb Smirnoff mtag = m_tag_get(PACKET_TAG_CARP, sizeof(struct ifnet *), M_NOWAIT); 768a9771948SGleb Smirnoff if (mtag == NULL) { 769a9771948SGleb Smirnoff m_freem(m); 770a9771948SGleb Smirnoff sc->sc_if.if_oerrors++; 771a9771948SGleb Smirnoff return (ENOMEM); 772a9771948SGleb Smirnoff } 773a9771948SGleb Smirnoff bcopy(&ifp, (caddr_t)(mtag + 1), sizeof(struct ifnet *)); 774a9771948SGleb Smirnoff m_tag_prepend(m, mtag); 775a9771948SGleb Smirnoff 776a9771948SGleb Smirnoff return (0); 777a9771948SGleb Smirnoff } 778a9771948SGleb Smirnoff 779a9771948SGleb Smirnoff void 780a9771948SGleb Smirnoff carp_send_ad_all(void) 781a9771948SGleb Smirnoff { 782a9771948SGleb Smirnoff struct ifnet *ifp; 783a9771948SGleb Smirnoff struct carp_if *cif; 784a9771948SGleb Smirnoff struct carp_softc *vh; 785a9771948SGleb Smirnoff 786a9771948SGleb Smirnoff TAILQ_FOREACH(ifp, &ifnet, if_list) { 787a9771948SGleb Smirnoff if (ifp->if_carp == NULL) 788a9771948SGleb Smirnoff continue; 789a9771948SGleb Smirnoff 790a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 791a9771948SGleb Smirnoff CARP_LOCK(cif); 792a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 793a9771948SGleb Smirnoff if ((vh->sc_ac.ac_if.if_flags & (IFF_UP|IFF_RUNNING)) && 794a9771948SGleb Smirnoff vh->sc_state == MASTER) 795a9771948SGleb Smirnoff carp_send_ad(vh); 796a9771948SGleb Smirnoff } 797a9771948SGleb Smirnoff CARP_UNLOCK(cif); 798a9771948SGleb Smirnoff } 799a9771948SGleb Smirnoff } 800a9771948SGleb Smirnoff 801a9771948SGleb Smirnoff void 802a9771948SGleb Smirnoff carp_send_ad(void *v) 803a9771948SGleb Smirnoff { 804a9771948SGleb Smirnoff struct carp_header ch; 805a9771948SGleb Smirnoff struct timeval tv; 806a9771948SGleb Smirnoff struct carp_softc *sc = v; 807a9771948SGleb Smirnoff struct carp_header *ch_ptr; 808a9771948SGleb Smirnoff struct mbuf *m; 809a9771948SGleb Smirnoff int len, advbase, advskew; 810a9771948SGleb Smirnoff 811a9771948SGleb Smirnoff /* bow out if we've lost our UPness or RUNNINGuiness */ 812a9771948SGleb Smirnoff if ((sc->sc_if.if_flags & 813a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) != (IFF_UP|IFF_RUNNING)) { 814a9771948SGleb Smirnoff advbase = 255; 815a9771948SGleb Smirnoff advskew = 255; 816a9771948SGleb Smirnoff } else { 817a9771948SGleb Smirnoff advbase = sc->sc_advbase; 818a9771948SGleb Smirnoff if (!carp_suppress_preempt || sc->sc_advskew > 240) 819a9771948SGleb Smirnoff advskew = sc->sc_advskew; 820a9771948SGleb Smirnoff else 821a9771948SGleb Smirnoff advskew = 240; 822a9771948SGleb Smirnoff tv.tv_sec = advbase; 823a9771948SGleb Smirnoff tv.tv_usec = advskew * 1000000 / 256; 824a9771948SGleb Smirnoff } 825a9771948SGleb Smirnoff 826a9771948SGleb Smirnoff ch.carp_version = CARP_VERSION; 827a9771948SGleb Smirnoff ch.carp_type = CARP_ADVERTISEMENT; 828a9771948SGleb Smirnoff ch.carp_vhid = sc->sc_vhid; 829a9771948SGleb Smirnoff ch.carp_advbase = advbase; 830a9771948SGleb Smirnoff ch.carp_advskew = advskew; 831a9771948SGleb Smirnoff ch.carp_authlen = 7; /* XXX DEFINE */ 832a9771948SGleb Smirnoff ch.carp_pad1 = 0; /* must be zero */ 833a9771948SGleb Smirnoff ch.carp_cksum = 0; 834a9771948SGleb Smirnoff 835a9771948SGleb Smirnoff #ifdef INET 836a9771948SGleb Smirnoff if (sc->sc_ia) { 837a9771948SGleb Smirnoff struct ip *ip; 838a9771948SGleb Smirnoff 839a9771948SGleb Smirnoff MGETHDR(m, M_DONTWAIT, MT_HEADER); 840a9771948SGleb Smirnoff if (m == NULL) { 841a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_oerrors++; 842a9771948SGleb Smirnoff carpstats.carps_onomem++; 843a9771948SGleb Smirnoff /* XXX maybe less ? */ 844a9771948SGleb Smirnoff if (advbase != 255 || advskew != 255) 845a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 846a9771948SGleb Smirnoff carp_send_ad, sc); 847a9771948SGleb Smirnoff return; 848a9771948SGleb Smirnoff } 849a9771948SGleb Smirnoff len = sizeof(*ip) + sizeof(ch); 850a9771948SGleb Smirnoff m->m_pkthdr.len = len; 851a9771948SGleb Smirnoff m->m_pkthdr.rcvif = NULL; 852a9771948SGleb Smirnoff m->m_len = len; 853a9771948SGleb Smirnoff MH_ALIGN(m, m->m_len); 854a9771948SGleb Smirnoff m->m_flags |= M_MCAST; 855a9771948SGleb Smirnoff ip = mtod(m, struct ip *); 856a9771948SGleb Smirnoff ip->ip_v = IPVERSION; 857a9771948SGleb Smirnoff ip->ip_hl = sizeof(*ip) >> 2; 858a9771948SGleb Smirnoff ip->ip_tos = IPTOS_LOWDELAY; 859a9771948SGleb Smirnoff ip->ip_len = len; 860a9771948SGleb Smirnoff ip->ip_id = ip_newid(); 861a9771948SGleb Smirnoff ip->ip_off = IP_DF; 862a9771948SGleb Smirnoff ip->ip_ttl = CARP_DFLTTL; 863a9771948SGleb Smirnoff ip->ip_p = IPPROTO_CARP; 864a9771948SGleb Smirnoff ip->ip_sum = 0; 865a9771948SGleb Smirnoff ip->ip_src.s_addr = sc->sc_ia->ia_addr.sin_addr.s_addr; 866a9771948SGleb Smirnoff ip->ip_dst.s_addr = htonl(INADDR_CARP_GROUP); 867a9771948SGleb Smirnoff 868a9771948SGleb Smirnoff ch_ptr = (struct carp_header *)(&ip[1]); 869a9771948SGleb Smirnoff bcopy(&ch, ch_ptr, sizeof(ch)); 870a9771948SGleb Smirnoff if (carp_prepare_ad(m, sc, ch_ptr)) 871a9771948SGleb Smirnoff return; 872a9771948SGleb Smirnoff 873a9771948SGleb Smirnoff m->m_data += sizeof(*ip); 874a9771948SGleb Smirnoff ch_ptr->carp_cksum = carp_cksum(m, len - sizeof(*ip)); 875a9771948SGleb Smirnoff m->m_data -= sizeof(*ip); 876a9771948SGleb Smirnoff 877a9771948SGleb Smirnoff getmicrotime(&sc->sc_if.if_lastchange); 878a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_opackets++; 879a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_obytes += len; 880a9771948SGleb Smirnoff carpstats.carps_opackets++; 881a9771948SGleb Smirnoff 882a9771948SGleb Smirnoff if (ip_output(m, NULL, NULL, IP_RAWOUTPUT, &sc->sc_imo, NULL)) { 883a9771948SGleb Smirnoff sc->sc_if.if_oerrors++; 884a9771948SGleb Smirnoff if (sc->sc_sendad_errors < INT_MAX) 885a9771948SGleb Smirnoff sc->sc_sendad_errors++; 886a9771948SGleb Smirnoff if (sc->sc_sendad_errors == CARP_SENDAD_MAX_ERRORS) { 887a9771948SGleb Smirnoff carp_suppress_preempt++; 888a9771948SGleb Smirnoff if (carp_suppress_preempt == 1) 889a9771948SGleb Smirnoff carp_send_ad_all(); 890a9771948SGleb Smirnoff } 891a9771948SGleb Smirnoff sc->sc_sendad_success = 0; 892a9771948SGleb Smirnoff } else { 893a9771948SGleb Smirnoff if (sc->sc_sendad_errors >= CARP_SENDAD_MAX_ERRORS) { 894a9771948SGleb Smirnoff if (++sc->sc_sendad_success >= 895a9771948SGleb Smirnoff CARP_SENDAD_MIN_SUCCESS) { 896a9771948SGleb Smirnoff carp_suppress_preempt--; 897a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 898a9771948SGleb Smirnoff } 899a9771948SGleb Smirnoff } else 900a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 901a9771948SGleb Smirnoff } 902a9771948SGleb Smirnoff } 903a9771948SGleb Smirnoff #endif /* INET */ 904a9771948SGleb Smirnoff #ifdef INET6 905a9771948SGleb Smirnoff if (sc->sc_ia6) { 906a9771948SGleb Smirnoff struct ip6_hdr *ip6; 907a9771948SGleb Smirnoff 908a9771948SGleb Smirnoff MGETHDR(m, M_DONTWAIT, MT_HEADER); 909a9771948SGleb Smirnoff if (m == NULL) { 910a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_oerrors++; 911a9771948SGleb Smirnoff carpstats.carps_onomem++; 912a9771948SGleb Smirnoff /* XXX maybe less ? */ 913a9771948SGleb Smirnoff if (advbase != 255 || advskew != 255) 914a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 915a9771948SGleb Smirnoff carp_send_ad, sc); 916a9771948SGleb Smirnoff return; 917a9771948SGleb Smirnoff } 918a9771948SGleb Smirnoff len = sizeof(*ip6) + sizeof(ch); 919a9771948SGleb Smirnoff m->m_pkthdr.len = len; 920a9771948SGleb Smirnoff m->m_pkthdr.rcvif = NULL; 921a9771948SGleb Smirnoff m->m_len = len; 922a9771948SGleb Smirnoff MH_ALIGN(m, m->m_len); 923a9771948SGleb Smirnoff m->m_flags |= M_MCAST; 924a9771948SGleb Smirnoff ip6 = mtod(m, struct ip6_hdr *); 925a9771948SGleb Smirnoff bzero(ip6, sizeof(*ip6)); 926a9771948SGleb Smirnoff ip6->ip6_vfc |= IPV6_VERSION; 927a9771948SGleb Smirnoff ip6->ip6_hlim = CARP_DFLTTL; 928a9771948SGleb Smirnoff ip6->ip6_nxt = IPPROTO_CARP; 929a9771948SGleb Smirnoff bcopy(&sc->sc_ia6->ia_addr.sin6_addr, &ip6->ip6_src, 930a9771948SGleb Smirnoff sizeof(struct in6_addr)); 931a9771948SGleb Smirnoff /* set the multicast destination */ 932a9771948SGleb Smirnoff 933a9771948SGleb Smirnoff ip6->ip6_dst.s6_addr8[0] = 0xff; 934a9771948SGleb Smirnoff ip6->ip6_dst.s6_addr8[1] = 0x02; 935a9771948SGleb Smirnoff ip6->ip6_dst.s6_addr8[15] = 0x12; 936a9771948SGleb Smirnoff 937a9771948SGleb Smirnoff ch_ptr = (struct carp_header *)(&ip6[1]); 938a9771948SGleb Smirnoff bcopy(&ch, ch_ptr, sizeof(ch)); 939a9771948SGleb Smirnoff if (carp_prepare_ad(m, sc, ch_ptr)) 940a9771948SGleb Smirnoff return; 941a9771948SGleb Smirnoff 942a9771948SGleb Smirnoff m->m_data += sizeof(*ip6); 943a9771948SGleb Smirnoff ch_ptr->carp_cksum = carp_cksum(m, len - sizeof(*ip6)); 944a9771948SGleb Smirnoff m->m_data -= sizeof(*ip6); 945a9771948SGleb Smirnoff 946a9771948SGleb Smirnoff getmicrotime(&sc->sc_if.if_lastchange); 947a9771948SGleb Smirnoff sc->sc_if.if_opackets++; 948a9771948SGleb Smirnoff sc->sc_if.if_obytes += len; 949a9771948SGleb Smirnoff carpstats.carps_opackets6++; 950a9771948SGleb Smirnoff 951a9771948SGleb Smirnoff if (ip6_output(m, NULL, NULL, 0, &sc->sc_im6o, NULL, NULL)) { 952a9771948SGleb Smirnoff sc->sc_if.if_oerrors++; 953a9771948SGleb Smirnoff if (sc->sc_sendad_errors < INT_MAX) 954a9771948SGleb Smirnoff sc->sc_sendad_errors++; 955a9771948SGleb Smirnoff if (sc->sc_sendad_errors == CARP_SENDAD_MAX_ERRORS) { 956a9771948SGleb Smirnoff carp_suppress_preempt++; 957a9771948SGleb Smirnoff if (carp_suppress_preempt == 1) 958a9771948SGleb Smirnoff carp_send_ad_all(); 959a9771948SGleb Smirnoff } 960a9771948SGleb Smirnoff sc->sc_sendad_success = 0; 961a9771948SGleb Smirnoff } else { 962a9771948SGleb Smirnoff if (sc->sc_sendad_errors >= CARP_SENDAD_MAX_ERRORS) { 963a9771948SGleb Smirnoff if (++sc->sc_sendad_success >= 964a9771948SGleb Smirnoff CARP_SENDAD_MIN_SUCCESS) { 965a9771948SGleb Smirnoff carp_suppress_preempt--; 966a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 967a9771948SGleb Smirnoff } 968a9771948SGleb Smirnoff } else 969a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 970a9771948SGleb Smirnoff } 971a9771948SGleb Smirnoff } 972a9771948SGleb Smirnoff #endif /* INET6 */ 973a9771948SGleb Smirnoff 974a9771948SGleb Smirnoff if (advbase != 255 || advskew != 255) 975a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 976a9771948SGleb Smirnoff carp_send_ad, sc); 977a9771948SGleb Smirnoff 978a9771948SGleb Smirnoff } 979a9771948SGleb Smirnoff 980a9771948SGleb Smirnoff /* 981a9771948SGleb Smirnoff * Broadcast a gratuitous ARP request containing 982a9771948SGleb Smirnoff * the virtual router MAC address for each IP address 983a9771948SGleb Smirnoff * associated with the virtual router. 984a9771948SGleb Smirnoff */ 985a9771948SGleb Smirnoff void 986a9771948SGleb Smirnoff carp_send_arp(struct carp_softc *sc) 987a9771948SGleb Smirnoff { 988a9771948SGleb Smirnoff struct ifaddr *ifa; 989a9771948SGleb Smirnoff 990a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 991a9771948SGleb Smirnoff 992a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family != AF_INET) 993a9771948SGleb Smirnoff continue; 994a9771948SGleb Smirnoff 995a9771948SGleb Smirnoff /* arprequest(sc->sc_ifp, &in, &in, sc->sc_ac.ac_enaddr); */ 996a9771948SGleb Smirnoff arp_ifinit2(sc->sc_ifp, ifa, sc->sc_ac.ac_enaddr); 997a9771948SGleb Smirnoff 998a9771948SGleb Smirnoff DELAY(1000); /* XXX */ 999a9771948SGleb Smirnoff } 1000a9771948SGleb Smirnoff } 1001a9771948SGleb Smirnoff 1002a9771948SGleb Smirnoff #ifdef INET6 1003a9771948SGleb Smirnoff void 1004a9771948SGleb Smirnoff carp_send_na(struct carp_softc *sc) 1005a9771948SGleb Smirnoff { 1006a9771948SGleb Smirnoff struct ifaddr *ifa; 1007a9771948SGleb Smirnoff struct in6_addr *in6; 1008a9771948SGleb Smirnoff static struct in6_addr mcast = IN6ADDR_LINKLOCAL_ALLNODES_INIT; 1009a9771948SGleb Smirnoff 1010a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 1011a9771948SGleb Smirnoff 1012a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family != AF_INET6) 1013a9771948SGleb Smirnoff continue; 1014a9771948SGleb Smirnoff 1015a9771948SGleb Smirnoff in6 = &ifatoia6(ifa)->ia_addr.sin6_addr; 1016a9771948SGleb Smirnoff nd6_na_output(sc->sc_ifp, &mcast, in6, 1017a9771948SGleb Smirnoff ND_NA_FLAG_OVERRIDE, 1, NULL); 1018a9771948SGleb Smirnoff DELAY(1000); /* XXX */ 1019a9771948SGleb Smirnoff } 1020a9771948SGleb Smirnoff } 1021a9771948SGleb Smirnoff #endif /* INET6 */ 1022a9771948SGleb Smirnoff 1023a9771948SGleb Smirnoff int 1024a9771948SGleb Smirnoff carp_addrcount(struct carp_if *cif, struct in_ifaddr *ia, int type) 1025a9771948SGleb Smirnoff { 1026a9771948SGleb Smirnoff struct carp_softc *vh; 1027a9771948SGleb Smirnoff struct ifaddr *ifa; 1028a9771948SGleb Smirnoff int count = 0; 1029a9771948SGleb Smirnoff 1030a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1031a9771948SGleb Smirnoff if ((type == CARP_COUNT_RUNNING && 1032a9771948SGleb Smirnoff (vh->sc_ac.ac_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1033a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) || 1034a9771948SGleb Smirnoff (type == CARP_COUNT_MASTER && vh->sc_state == MASTER)) { 1035a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &vh->sc_ac.ac_if.if_addrlist, 1036a9771948SGleb Smirnoff ifa_list) { 1037a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET && 1038a9771948SGleb Smirnoff ia->ia_addr.sin_addr.s_addr == 1039a9771948SGleb Smirnoff ifatoia(ifa)->ia_addr.sin_addr.s_addr) 1040a9771948SGleb Smirnoff count++; 1041a9771948SGleb Smirnoff } 1042a9771948SGleb Smirnoff } 1043a9771948SGleb Smirnoff } 1044a9771948SGleb Smirnoff return (count); 1045a9771948SGleb Smirnoff } 1046a9771948SGleb Smirnoff 1047a9771948SGleb Smirnoff int 1048a9771948SGleb Smirnoff carp_iamatch(void *v, struct in_ifaddr *ia, 1049a9771948SGleb Smirnoff struct in_addr *isaddr, u_int8_t **enaddr) 1050a9771948SGleb Smirnoff { 1051a9771948SGleb Smirnoff struct carp_if *cif = v; 1052a9771948SGleb Smirnoff struct carp_softc *vh; 1053a9771948SGleb Smirnoff int index, count = 0; 1054a9771948SGleb Smirnoff struct ifaddr *ifa; 1055a9771948SGleb Smirnoff 1056a9771948SGleb Smirnoff CARP_LOCK(cif); 1057a9771948SGleb Smirnoff 1058a9771948SGleb Smirnoff if (carp_opts[CARPCTL_ARPBALANCE]) { 1059a9771948SGleb Smirnoff /* 1060a9771948SGleb Smirnoff * XXX proof of concept implementation. 1061a9771948SGleb Smirnoff * We use the source ip to decide which virtual host should 1062a9771948SGleb Smirnoff * handle the request. If we're master of that virtual host, 1063a9771948SGleb Smirnoff * then we respond, otherwise, just drop the arp packet on 1064a9771948SGleb Smirnoff * the floor. 1065a9771948SGleb Smirnoff */ 1066a9771948SGleb Smirnoff count = carp_addrcount(cif, ia, CARP_COUNT_RUNNING); 1067a9771948SGleb Smirnoff if (count == 0) { 1068a9771948SGleb Smirnoff /* should never reach this */ 1069a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1070a9771948SGleb Smirnoff return (0); 1071a9771948SGleb Smirnoff } 1072a9771948SGleb Smirnoff 1073a9771948SGleb Smirnoff /* this should be a hash, like pf_hash() */ 1074a9771948SGleb Smirnoff index = isaddr->s_addr % count; 1075a9771948SGleb Smirnoff count = 0; 1076a9771948SGleb Smirnoff 1077a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1078a9771948SGleb Smirnoff if ((vh->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1079a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) { 1080a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &vh->sc_if.if_addrlist, 1081a9771948SGleb Smirnoff ifa_list) { 1082a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == 1083a9771948SGleb Smirnoff AF_INET && 1084a9771948SGleb Smirnoff ia->ia_addr.sin_addr.s_addr == 1085a9771948SGleb Smirnoff ifatoia(ifa)->ia_addr.sin_addr.s_addr) { 1086a9771948SGleb Smirnoff if (count == index) { 1087a9771948SGleb Smirnoff if (vh->sc_state == 1088a9771948SGleb Smirnoff MASTER) { 1089a9771948SGleb Smirnoff *enaddr = vh->sc_ac.ac_enaddr; 1090a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1091a9771948SGleb Smirnoff return (1); 1092a9771948SGleb Smirnoff } else { 1093a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1094a9771948SGleb Smirnoff return (0); 1095a9771948SGleb Smirnoff } 1096a9771948SGleb Smirnoff } 1097a9771948SGleb Smirnoff count++; 1098a9771948SGleb Smirnoff } 1099a9771948SGleb Smirnoff } 1100a9771948SGleb Smirnoff } 1101a9771948SGleb Smirnoff } 1102a9771948SGleb Smirnoff } else { 1103a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1104a9771948SGleb Smirnoff if ((vh->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1105a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING) && ia->ia_ifp == 1106a9771948SGleb Smirnoff &vh->sc_if) { 1107a9771948SGleb Smirnoff *enaddr = vh->sc_ac.ac_enaddr; 1108a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1109a9771948SGleb Smirnoff return (1); 1110a9771948SGleb Smirnoff } 1111a9771948SGleb Smirnoff } 1112a9771948SGleb Smirnoff } 1113a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1114a9771948SGleb Smirnoff return (0); 1115a9771948SGleb Smirnoff } 1116a9771948SGleb Smirnoff 1117a9771948SGleb Smirnoff #ifdef INET6 1118a9771948SGleb Smirnoff struct ifaddr * 1119a9771948SGleb Smirnoff carp_iamatch6(void *v, struct in6_addr *taddr) 1120a9771948SGleb Smirnoff { 1121a9771948SGleb Smirnoff struct carp_if *cif = v; 1122a9771948SGleb Smirnoff struct carp_softc *vh; 1123a9771948SGleb Smirnoff struct ifaddr *ifa; 1124a9771948SGleb Smirnoff 1125a9771948SGleb Smirnoff CARP_LOCK(cif); 1126a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1127a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &vh->sc_if.if_addrlist, ifa_list) { 1128a9771948SGleb Smirnoff if (IN6_ARE_ADDR_EQUAL(taddr, 1129a9771948SGleb Smirnoff &ifatoia6(ifa)->ia_addr.sin6_addr) && 1130a9771948SGleb Smirnoff ((vh->sc_if.if_flags & 1131a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) == (IFF_UP|IFF_RUNNING))) { 1132a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1133a9771948SGleb Smirnoff return (ifa); 1134a9771948SGleb Smirnoff } 1135a9771948SGleb Smirnoff } 1136a9771948SGleb Smirnoff } 1137a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1138a9771948SGleb Smirnoff 1139a9771948SGleb Smirnoff return (NULL); 1140a9771948SGleb Smirnoff } 1141a9771948SGleb Smirnoff 1142a9771948SGleb Smirnoff void * 1143a9771948SGleb Smirnoff carp_macmatch6(void *v, struct mbuf *m, const struct in6_addr *taddr) 1144a9771948SGleb Smirnoff { 1145a9771948SGleb Smirnoff struct m_tag *mtag; 1146a9771948SGleb Smirnoff struct carp_if *cif = v; 1147a9771948SGleb Smirnoff struct carp_softc *sc; 1148a9771948SGleb Smirnoff struct ifaddr *ifa; 1149a9771948SGleb Smirnoff 1150a9771948SGleb Smirnoff CARP_LOCK(cif); 1151a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &cif->vhif_vrs, sc_list) { 1152a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 1153a9771948SGleb Smirnoff if (IN6_ARE_ADDR_EQUAL(taddr, 1154a9771948SGleb Smirnoff &ifatoia6(ifa)->ia_addr.sin6_addr) && 1155a9771948SGleb Smirnoff ((sc->sc_if.if_flags & 1156a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) == (IFF_UP|IFF_RUNNING))) { 1157a9771948SGleb Smirnoff struct ifnet *ifp = &sc->sc_if; 1158a9771948SGleb Smirnoff mtag = m_tag_get(PACKET_TAG_CARP, 1159a9771948SGleb Smirnoff sizeof(struct ifnet *), M_NOWAIT); 1160a9771948SGleb Smirnoff if (mtag == NULL) { 1161a9771948SGleb Smirnoff /* better a bit than nothing */ 1162a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1163a9771948SGleb Smirnoff return (sc->sc_ac.ac_enaddr); 1164a9771948SGleb Smirnoff } 1165a9771948SGleb Smirnoff bcopy(&ifp, (caddr_t)(mtag + 1), 1166a9771948SGleb Smirnoff sizeof(struct ifnet *)); 1167a9771948SGleb Smirnoff m_tag_prepend(m, mtag); 1168a9771948SGleb Smirnoff 1169a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1170a9771948SGleb Smirnoff return (sc->sc_ac.ac_enaddr); 1171a9771948SGleb Smirnoff } 1172a9771948SGleb Smirnoff } 1173a9771948SGleb Smirnoff } 1174a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1175a9771948SGleb Smirnoff 1176a9771948SGleb Smirnoff return (NULL); 1177a9771948SGleb Smirnoff } 1178a9771948SGleb Smirnoff #endif 1179a9771948SGleb Smirnoff 1180a9771948SGleb Smirnoff struct ifnet * 1181a9771948SGleb Smirnoff carp_forus(void *v, void *dhost) 1182a9771948SGleb Smirnoff { 1183a9771948SGleb Smirnoff struct carp_if *cif = v; 1184a9771948SGleb Smirnoff struct carp_softc *vh; 1185a9771948SGleb Smirnoff u_int8_t *ena = dhost; 1186a9771948SGleb Smirnoff 1187a9771948SGleb Smirnoff if (ena[0] || ena[1] || ena[2] != 0x5e || ena[3] || ena[4] != 1) 1188a9771948SGleb Smirnoff return (NULL); 1189a9771948SGleb Smirnoff 1190a9771948SGleb Smirnoff CARP_LOCK(cif); 1191a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) 1192a9771948SGleb Smirnoff if ((vh->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1193a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING) && vh->sc_state == MASTER && 1194a9771948SGleb Smirnoff !bcmp(dhost, vh->sc_ac.ac_enaddr, ETHER_ADDR_LEN)) { 1195a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1196a9771948SGleb Smirnoff return (&vh->sc_if); 1197a9771948SGleb Smirnoff } 1198a9771948SGleb Smirnoff 1199a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1200a9771948SGleb Smirnoff return (NULL); 1201a9771948SGleb Smirnoff } 1202a9771948SGleb Smirnoff 1203a9771948SGleb Smirnoff void 1204a9771948SGleb Smirnoff carp_master_down(void *v) 1205a9771948SGleb Smirnoff { 1206a9771948SGleb Smirnoff struct carp_softc *sc = v; 1207a9771948SGleb Smirnoff 1208a9771948SGleb Smirnoff switch (sc->sc_state) { 1209a9771948SGleb Smirnoff case INIT: 1210a9771948SGleb Smirnoff printf("%s: master_down event in INIT state\n", 1211a9771948SGleb Smirnoff sc->sc_if.if_xname); 1212a9771948SGleb Smirnoff break; 1213a9771948SGleb Smirnoff case MASTER: 1214a9771948SGleb Smirnoff break; 1215a9771948SGleb Smirnoff case BACKUP: 1216a9771948SGleb Smirnoff carp_set_state(sc, MASTER); 1217a9771948SGleb Smirnoff carp_send_ad(sc); 1218a9771948SGleb Smirnoff carp_send_arp(sc); 1219a9771948SGleb Smirnoff #ifdef INET6 1220a9771948SGleb Smirnoff carp_send_na(sc); 1221a9771948SGleb Smirnoff #endif /* INET6 */ 1222a9771948SGleb Smirnoff carp_setrun(sc, 0); 1223a9771948SGleb Smirnoff carp_setroute(sc, RTM_ADD); 1224a9771948SGleb Smirnoff break; 1225a9771948SGleb Smirnoff } 1226a9771948SGleb Smirnoff } 1227a9771948SGleb Smirnoff 1228a9771948SGleb Smirnoff /* 1229a9771948SGleb Smirnoff * When in backup state, af indicates whether to reset the master down timer 1230a9771948SGleb Smirnoff * for v4 or v6. If it's set to zero, reset the ones which are already pending. 1231a9771948SGleb Smirnoff */ 1232a9771948SGleb Smirnoff void 1233a9771948SGleb Smirnoff carp_setrun(struct carp_softc *sc, sa_family_t af) 1234a9771948SGleb Smirnoff { 1235a9771948SGleb Smirnoff struct timeval tv; 1236a9771948SGleb Smirnoff 1237a9771948SGleb Smirnoff if (sc->sc_if.if_flags & IFF_UP && 1238a9771948SGleb Smirnoff sc->sc_vhid > 0 && (sc->sc_naddrs || sc->sc_naddrs6)) 1239a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_RUNNING; 1240a9771948SGleb Smirnoff else { 1241a9771948SGleb Smirnoff sc->sc_if.if_flags &= ~IFF_RUNNING; 1242a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 1243a9771948SGleb Smirnoff return; 1244a9771948SGleb Smirnoff } 1245a9771948SGleb Smirnoff 1246a9771948SGleb Smirnoff switch (sc->sc_state) { 1247a9771948SGleb Smirnoff case INIT: 1248a9771948SGleb Smirnoff if (carp_opts[CARPCTL_PREEMPT] && !carp_suppress_preempt) { 1249a9771948SGleb Smirnoff carp_send_ad(sc); 1250a9771948SGleb Smirnoff carp_send_arp(sc); 1251a9771948SGleb Smirnoff #ifdef INET6 1252a9771948SGleb Smirnoff carp_send_na(sc); 1253a9771948SGleb Smirnoff #endif /* INET6 */ 12541e9e6572SGleb Smirnoff CARP_DEBUG("%s: INIT -> MASTER (preempting)", 12551e9e6572SGleb Smirnoff sc->sc_if.if_xname); 1256a9771948SGleb Smirnoff carp_set_state(sc, MASTER); 1257a9771948SGleb Smirnoff carp_setroute(sc, RTM_ADD); 1258a9771948SGleb Smirnoff } else { 12591e9e6572SGleb Smirnoff CARP_DEBUG("%s: INIT -> BACKUP", sc->sc_if.if_xname); 1260a9771948SGleb Smirnoff carp_set_state(sc, BACKUP); 1261a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 1262a9771948SGleb Smirnoff carp_setrun(sc, 0); 1263a9771948SGleb Smirnoff } 1264a9771948SGleb Smirnoff break; 1265a9771948SGleb Smirnoff case BACKUP: 1266a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1267a9771948SGleb Smirnoff tv.tv_sec = 3 * sc->sc_advbase; 1268a9771948SGleb Smirnoff tv.tv_usec = sc->sc_advskew * 1000000 / 256; 1269a9771948SGleb Smirnoff switch (af) { 1270a9771948SGleb Smirnoff #ifdef INET 1271a9771948SGleb Smirnoff case AF_INET: 1272a9771948SGleb Smirnoff callout_reset(&sc->sc_md_tmo, tvtohz(&tv), 1273a9771948SGleb Smirnoff carp_master_down, sc); 1274a9771948SGleb Smirnoff break; 1275a9771948SGleb Smirnoff #endif /* INET */ 1276a9771948SGleb Smirnoff #ifdef INET6 1277a9771948SGleb Smirnoff case AF_INET6: 1278a9771948SGleb Smirnoff callout_reset(&sc->sc_md6_tmo, tvtohz(&tv), 1279a9771948SGleb Smirnoff carp_master_down, sc); 1280a9771948SGleb Smirnoff break; 1281a9771948SGleb Smirnoff #endif /* INET6 */ 1282a9771948SGleb Smirnoff default: 1283a9771948SGleb Smirnoff if (sc->sc_naddrs) 1284a9771948SGleb Smirnoff callout_reset(&sc->sc_md_tmo, tvtohz(&tv), 1285a9771948SGleb Smirnoff carp_master_down, sc); 1286a9771948SGleb Smirnoff if (sc->sc_naddrs6) 1287a9771948SGleb Smirnoff callout_reset(&sc->sc_md6_tmo, tvtohz(&tv), 1288a9771948SGleb Smirnoff carp_master_down, sc); 1289a9771948SGleb Smirnoff break; 1290a9771948SGleb Smirnoff } 1291a9771948SGleb Smirnoff break; 1292a9771948SGleb Smirnoff case MASTER: 1293a9771948SGleb Smirnoff tv.tv_sec = sc->sc_advbase; 1294a9771948SGleb Smirnoff tv.tv_usec = sc->sc_advskew * 1000000 / 256; 1295a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 1296a9771948SGleb Smirnoff carp_send_ad, sc); 1297a9771948SGleb Smirnoff break; 1298a9771948SGleb Smirnoff } 1299a9771948SGleb Smirnoff } 1300a9771948SGleb Smirnoff 1301a9771948SGleb Smirnoff int 1302a9771948SGleb Smirnoff carp_set_addr(struct carp_softc *sc, struct sockaddr_in *sin) 1303a9771948SGleb Smirnoff { 1304a9771948SGleb Smirnoff struct ifnet *ifp; 1305a9771948SGleb Smirnoff struct carp_if *cif; 1306a9771948SGleb Smirnoff struct in_ifaddr *ia, *ia_if; 1307a9771948SGleb Smirnoff struct ip_moptions *imo = &sc->sc_imo; 1308a9771948SGleb Smirnoff struct in_addr addr; 1309a9771948SGleb Smirnoff u_long iaddr = htonl(sin->sin_addr.s_addr); 1310a9771948SGleb Smirnoff int own, error; 1311a9771948SGleb Smirnoff 1312a9771948SGleb Smirnoff if (sin->sin_addr.s_addr == 0) { 1313a9771948SGleb Smirnoff if (!(sc->sc_if.if_flags & IFF_UP)) 1314a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1315a9771948SGleb Smirnoff if (sc->sc_naddrs) 1316a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1317a9771948SGleb Smirnoff carp_setrun(sc, 0); 1318a9771948SGleb Smirnoff return (0); 1319a9771948SGleb Smirnoff } 1320a9771948SGleb Smirnoff 1321a9771948SGleb Smirnoff /* we have to do it by hands to check we won't match on us */ 1322a9771948SGleb Smirnoff ia_if = NULL; own = 0; 1323a9771948SGleb Smirnoff TAILQ_FOREACH(ia, &in_ifaddrhead, ia_link) { 1324a9771948SGleb Smirnoff /* and, yeah, we need a multicast-capable iface too */ 1325a9771948SGleb Smirnoff if (ia->ia_ifp != &sc->sc_if && 1326a9771948SGleb Smirnoff (ia->ia_ifp->if_flags & IFF_MULTICAST) && 1327a9771948SGleb Smirnoff (iaddr & ia->ia_subnetmask) == ia->ia_subnet) { 1328a9771948SGleb Smirnoff if (!ia_if) 1329a9771948SGleb Smirnoff ia_if = ia; 1330a9771948SGleb Smirnoff if (sin->sin_addr.s_addr == 1331a9771948SGleb Smirnoff ia->ia_addr.sin_addr.s_addr) 1332a9771948SGleb Smirnoff own++; 1333a9771948SGleb Smirnoff } 1334a9771948SGleb Smirnoff } 1335a9771948SGleb Smirnoff 1336a9771948SGleb Smirnoff if (!ia_if) 1337a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1338a9771948SGleb Smirnoff 1339a9771948SGleb Smirnoff ia = ia_if; 1340a9771948SGleb Smirnoff ifp = ia->ia_ifp; 1341a9771948SGleb Smirnoff 1342a9771948SGleb Smirnoff if (ifp == NULL || (ifp->if_flags & IFF_MULTICAST) == 0 || 1343a9771948SGleb Smirnoff (imo->imo_multicast_ifp && imo->imo_multicast_ifp != ifp)) 1344a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1345a9771948SGleb Smirnoff 1346a9771948SGleb Smirnoff if (imo->imo_num_memberships == 0) { 1347a9771948SGleb Smirnoff addr.s_addr = htonl(INADDR_CARP_GROUP); 1348a9771948SGleb Smirnoff if ((imo->imo_membership[0] = in_addmulti(&addr, ifp)) == NULL) 1349a9771948SGleb Smirnoff return (ENOBUFS); 1350a9771948SGleb Smirnoff imo->imo_num_memberships++; 1351a9771948SGleb Smirnoff imo->imo_multicast_ifp = ifp; 1352a9771948SGleb Smirnoff imo->imo_multicast_ttl = CARP_DFLTTL; 1353a9771948SGleb Smirnoff imo->imo_multicast_loop = 0; 1354a9771948SGleb Smirnoff } 1355a9771948SGleb Smirnoff 1356a9771948SGleb Smirnoff if (!ifp->if_carp) { 1357a9771948SGleb Smirnoff 1358a9771948SGleb Smirnoff MALLOC(cif, struct carp_if *, sizeof(*cif), M_CARP, 1359a9771948SGleb Smirnoff M_WAITOK|M_ZERO); 1360a9771948SGleb Smirnoff if (!cif) { 1361a9771948SGleb Smirnoff error = ENOBUFS; 1362a9771948SGleb Smirnoff goto cleanup; 1363a9771948SGleb Smirnoff } 1364a9771948SGleb Smirnoff if ((error = ifpromisc(ifp, 1))) { 1365a9771948SGleb Smirnoff FREE(cif, M_CARP); 1366a9771948SGleb Smirnoff goto cleanup; 1367a9771948SGleb Smirnoff } 1368a9771948SGleb Smirnoff 1369a9771948SGleb Smirnoff CARP_LOCK_INIT(cif); 1370a9771948SGleb Smirnoff CARP_LOCK(cif); 1371a9771948SGleb Smirnoff cif->vhif_ifp = ifp; 1372a9771948SGleb Smirnoff TAILQ_INIT(&cif->vhif_vrs); 1373a9771948SGleb Smirnoff ifp->if_carp = cif; 1374a9771948SGleb Smirnoff 1375a9771948SGleb Smirnoff } else { 1376a9771948SGleb Smirnoff struct carp_softc *vr; 1377a9771948SGleb Smirnoff 1378a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1379a9771948SGleb Smirnoff CARP_LOCK(cif); 1380a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) 1381a9771948SGleb Smirnoff if (vr != sc && vr->sc_vhid == sc->sc_vhid) { 1382a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1383a9771948SGleb Smirnoff error = EINVAL; 1384a9771948SGleb Smirnoff goto cleanup; 1385a9771948SGleb Smirnoff } 1386a9771948SGleb Smirnoff } 1387a9771948SGleb Smirnoff sc->sc_ia = ia; 1388a9771948SGleb Smirnoff sc->sc_ifp = ifp; 1389a9771948SGleb Smirnoff 1390a9771948SGleb Smirnoff { /* XXX prevent endless loop if already in queue */ 1391a9771948SGleb Smirnoff struct carp_softc *vr, *after = NULL; 1392a9771948SGleb Smirnoff int myself = 0; 1393a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1394a9771948SGleb Smirnoff 1395a9771948SGleb Smirnoff /* XXX: cif should not change, right? So we still hold the lock */ 1396a9771948SGleb Smirnoff CARP_LOCK_ASSERT(cif); 1397a9771948SGleb Smirnoff 1398a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) { 1399a9771948SGleb Smirnoff if (vr == sc) 1400a9771948SGleb Smirnoff myself = 1; 1401a9771948SGleb Smirnoff if (vr->sc_vhid < sc->sc_vhid) 1402a9771948SGleb Smirnoff after = vr; 1403a9771948SGleb Smirnoff } 1404a9771948SGleb Smirnoff 1405a9771948SGleb Smirnoff if (!myself) { 1406a9771948SGleb Smirnoff /* We're trying to keep things in order */ 1407a9771948SGleb Smirnoff if (after == NULL) { 1408a9771948SGleb Smirnoff TAILQ_INSERT_TAIL(&cif->vhif_vrs, sc, sc_list); 1409a9771948SGleb Smirnoff } else { 1410a9771948SGleb Smirnoff TAILQ_INSERT_AFTER(&cif->vhif_vrs, after, sc, sc_list); 1411a9771948SGleb Smirnoff } 1412a9771948SGleb Smirnoff cif->vhif_nvrs++; 1413a9771948SGleb Smirnoff } 1414a9771948SGleb Smirnoff } 1415a9771948SGleb Smirnoff 1416a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1417a9771948SGleb Smirnoff 1418a9771948SGleb Smirnoff sc->sc_naddrs++; 1419a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1420a9771948SGleb Smirnoff if (own) 1421a9771948SGleb Smirnoff sc->sc_advskew = 0; 14226fba4c0bSGleb Smirnoff carp_carpdev_state(cif); 1423a9771948SGleb Smirnoff carp_setrun(sc, 0); 1424a9771948SGleb Smirnoff 1425a9771948SGleb Smirnoff return (0); 1426a9771948SGleb Smirnoff 1427a9771948SGleb Smirnoff cleanup: 1428a9771948SGleb Smirnoff in_delmulti(imo->imo_membership[--imo->imo_num_memberships]); 1429a9771948SGleb Smirnoff return (error); 1430a9771948SGleb Smirnoff } 1431a9771948SGleb Smirnoff 1432a9771948SGleb Smirnoff int 1433a9771948SGleb Smirnoff carp_del_addr(struct carp_softc *sc, struct sockaddr_in *sin) 1434a9771948SGleb Smirnoff { 1435a9771948SGleb Smirnoff int error = 0; 1436a9771948SGleb Smirnoff 1437a9771948SGleb Smirnoff if (!--sc->sc_naddrs) { 1438a9771948SGleb Smirnoff struct carp_if *cif = (struct carp_if *)sc->sc_ifp->if_carp; 1439a9771948SGleb Smirnoff struct ip_moptions *imo = &sc->sc_imo; 1440a9771948SGleb Smirnoff 1441a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1442a9771948SGleb Smirnoff sc->sc_if.if_flags &= ~(IFF_UP|IFF_RUNNING); 1443a9771948SGleb Smirnoff sc->sc_vhid = -1; 1444a9771948SGleb Smirnoff in_delmulti(imo->imo_membership[--imo->imo_num_memberships]); 1445a9771948SGleb Smirnoff imo->imo_multicast_ifp = NULL; 1446a9771948SGleb Smirnoff CARP_LOCK(cif); 1447a9771948SGleb Smirnoff TAILQ_REMOVE(&cif->vhif_vrs, sc, sc_list); 1448a9771948SGleb Smirnoff if (!--cif->vhif_nvrs) { 1449a9771948SGleb Smirnoff sc->sc_ifp->if_carp = NULL; 1450a9771948SGleb Smirnoff CARP_LOCK_DESTROY(cif); 1451a9771948SGleb Smirnoff FREE(cif, M_IFADDR); 1452a9771948SGleb Smirnoff } else { 1453a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1454a9771948SGleb Smirnoff } 1455a9771948SGleb Smirnoff } 1456a9771948SGleb Smirnoff 1457a9771948SGleb Smirnoff return (error); 1458a9771948SGleb Smirnoff } 1459a9771948SGleb Smirnoff 1460a9771948SGleb Smirnoff #ifdef INET6 1461a9771948SGleb Smirnoff int 1462a9771948SGleb Smirnoff carp_set_addr6(struct carp_softc *sc, struct sockaddr_in6 *sin6) 1463a9771948SGleb Smirnoff { 1464a9771948SGleb Smirnoff struct ifnet *ifp; 1465a9771948SGleb Smirnoff struct carp_if *cif; 1466a9771948SGleb Smirnoff struct in6_ifaddr *ia, *ia_if; 1467a9771948SGleb Smirnoff struct ip6_moptions *im6o = &sc->sc_im6o; 1468a9771948SGleb Smirnoff struct in6_multi_mship *imm; 1469a9771948SGleb Smirnoff struct sockaddr_in6 addr; 1470a9771948SGleb Smirnoff int own, error; 1471a9771948SGleb Smirnoff 1472a9771948SGleb Smirnoff if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 1473a9771948SGleb Smirnoff if (!(sc->sc_if.if_flags & IFF_UP)) 1474a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1475a9771948SGleb Smirnoff if (sc->sc_naddrs6) 1476a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1477a9771948SGleb Smirnoff carp_setrun(sc, 0); 1478a9771948SGleb Smirnoff return (0); 1479a9771948SGleb Smirnoff } 1480a9771948SGleb Smirnoff 1481a9771948SGleb Smirnoff /* we have to do it by hands to check we won't match on us */ 1482a9771948SGleb Smirnoff ia_if = NULL; own = 0; 1483a9771948SGleb Smirnoff for (ia = in6_ifaddr; ia; ia = ia->ia_next) { 1484a9771948SGleb Smirnoff int i; 1485a9771948SGleb Smirnoff 1486a9771948SGleb Smirnoff for (i = 0; i < 4; i++) { 1487a9771948SGleb Smirnoff if ((sin6->sin6_addr.s6_addr32[i] & 1488a9771948SGleb Smirnoff ia->ia_prefixmask.sin6_addr.s6_addr32[i]) != 1489a9771948SGleb Smirnoff (ia->ia_addr.sin6_addr.s6_addr32[i] & 1490a9771948SGleb Smirnoff ia->ia_prefixmask.sin6_addr.s6_addr32[i])) 1491a9771948SGleb Smirnoff break; 1492a9771948SGleb Smirnoff } 1493a9771948SGleb Smirnoff /* and, yeah, we need a multicast-capable iface too */ 1494a9771948SGleb Smirnoff if (ia->ia_ifp != &sc->sc_ac.ac_if && 1495a9771948SGleb Smirnoff (ia->ia_ifp->if_flags & IFF_MULTICAST) && 1496a9771948SGleb Smirnoff (i == 4)) { 1497a9771948SGleb Smirnoff if (!ia_if) 1498a9771948SGleb Smirnoff ia_if = ia; 1499a9771948SGleb Smirnoff if (IN6_ARE_ADDR_EQUAL(&sin6->sin6_addr, 1500a9771948SGleb Smirnoff &ia->ia_addr.sin6_addr)) 1501a9771948SGleb Smirnoff own++; 1502a9771948SGleb Smirnoff } 1503a9771948SGleb Smirnoff } 1504a9771948SGleb Smirnoff 1505a9771948SGleb Smirnoff if (!ia_if) 1506a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1507a9771948SGleb Smirnoff ia = ia_if; 1508a9771948SGleb Smirnoff ifp = ia->ia_ifp; 1509a9771948SGleb Smirnoff 1510a9771948SGleb Smirnoff if (ifp == NULL || (ifp->if_flags & IFF_MULTICAST) == 0 || 1511a9771948SGleb Smirnoff (im6o->im6o_multicast_ifp && im6o->im6o_multicast_ifp != ifp)) 1512a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1513a9771948SGleb Smirnoff 1514a9771948SGleb Smirnoff if (!sc->sc_naddrs6) { 1515a9771948SGleb Smirnoff im6o->im6o_multicast_ifp = ifp; 1516a9771948SGleb Smirnoff 1517a9771948SGleb Smirnoff /* join CARP multicast address */ 1518a9771948SGleb Smirnoff bzero(&addr, sizeof(addr)); 1519a9771948SGleb Smirnoff addr.sin6_family = AF_INET6; 1520a9771948SGleb Smirnoff addr.sin6_len = sizeof(addr); 1521a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[0] = htons(0xff02); 1522a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[1] = htons(ifp->if_index); 1523a9771948SGleb Smirnoff addr.sin6_addr.s6_addr8[15] = 0x12; 1524a9771948SGleb Smirnoff if ((imm = in6_joingroup(ifp, &addr.sin6_addr, &error)) == NULL) 1525a9771948SGleb Smirnoff goto cleanup; 1526a9771948SGleb Smirnoff LIST_INSERT_HEAD(&im6o->im6o_memberships, imm, i6mm_chain); 1527a9771948SGleb Smirnoff 1528a9771948SGleb Smirnoff /* join solicited multicast address */ 1529a9771948SGleb Smirnoff bzero(&addr.sin6_addr, sizeof(addr.sin6_addr)); 1530a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[0] = htons(0xff02); 1531a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[1] = htons(ifp->if_index); 1532a9771948SGleb Smirnoff addr.sin6_addr.s6_addr32[1] = 0; 1533a9771948SGleb Smirnoff addr.sin6_addr.s6_addr32[2] = htonl(1); 1534a9771948SGleb Smirnoff addr.sin6_addr.s6_addr32[3] = sin6->sin6_addr.s6_addr32[3]; 1535a9771948SGleb Smirnoff addr.sin6_addr.s6_addr8[12] = 0xff; 1536a9771948SGleb Smirnoff if ((imm = in6_joingroup(ifp, &addr.sin6_addr, &error)) == NULL) 1537a9771948SGleb Smirnoff goto cleanup; 1538a9771948SGleb Smirnoff LIST_INSERT_HEAD(&im6o->im6o_memberships, imm, i6mm_chain); 1539a9771948SGleb Smirnoff } 1540a9771948SGleb Smirnoff 1541a9771948SGleb Smirnoff if (!ifp->if_carp) { 1542a9771948SGleb Smirnoff MALLOC(cif, struct carp_if *, sizeof(*cif), M_CARP, 1543a9771948SGleb Smirnoff M_WAITOK|M_ZERO); 1544a9771948SGleb Smirnoff if (!cif) { 1545a9771948SGleb Smirnoff error = ENOBUFS; 1546a9771948SGleb Smirnoff goto cleanup; 1547a9771948SGleb Smirnoff } 1548a9771948SGleb Smirnoff if ((error = ifpromisc(ifp, 1))) { 1549a9771948SGleb Smirnoff FREE(cif, M_CARP); 1550a9771948SGleb Smirnoff goto cleanup; 1551a9771948SGleb Smirnoff } 1552a9771948SGleb Smirnoff 1553a9771948SGleb Smirnoff CARP_LOCK_INIT(cif); 1554a9771948SGleb Smirnoff CARP_LOCK(cif); 1555a9771948SGleb Smirnoff cif->vhif_ifp = ifp; 1556a9771948SGleb Smirnoff TAILQ_INIT(&cif->vhif_vrs); 1557a9771948SGleb Smirnoff ifp->if_carp = cif; 1558a9771948SGleb Smirnoff 1559a9771948SGleb Smirnoff } else { 1560a9771948SGleb Smirnoff struct carp_softc *vr; 1561a9771948SGleb Smirnoff 1562a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1563a9771948SGleb Smirnoff CARP_LOCK(cif); 1564a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) 1565a9771948SGleb Smirnoff if (vr != sc && vr->sc_vhid == sc->sc_vhid) { 1566a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1567a9771948SGleb Smirnoff error = EINVAL; 1568a9771948SGleb Smirnoff goto cleanup; 1569a9771948SGleb Smirnoff } 1570a9771948SGleb Smirnoff } 1571a9771948SGleb Smirnoff sc->sc_ia6 = ia; 1572a9771948SGleb Smirnoff sc->sc_ifp = ifp; 1573a9771948SGleb Smirnoff 1574a9771948SGleb Smirnoff { /* XXX prevent endless loop if already in queue */ 1575a9771948SGleb Smirnoff struct carp_softc *vr, *after = NULL; 1576a9771948SGleb Smirnoff int myself = 0; 1577a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1578a9771948SGleb Smirnoff CARP_LOCK_ASSERT(cif); 1579a9771948SGleb Smirnoff 1580a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) { 1581a9771948SGleb Smirnoff if (vr == sc) 1582a9771948SGleb Smirnoff myself = 1; 1583a9771948SGleb Smirnoff if (vr->sc_vhid < sc->sc_vhid) 1584a9771948SGleb Smirnoff after = vr; 1585a9771948SGleb Smirnoff } 1586a9771948SGleb Smirnoff 1587a9771948SGleb Smirnoff if (!myself) { 1588a9771948SGleb Smirnoff /* We're trying to keep things in order */ 1589a9771948SGleb Smirnoff if (after == NULL) { 1590a9771948SGleb Smirnoff TAILQ_INSERT_TAIL(&cif->vhif_vrs, sc, sc_list); 1591a9771948SGleb Smirnoff } else { 1592a9771948SGleb Smirnoff TAILQ_INSERT_AFTER(&cif->vhif_vrs, after, sc, sc_list); 1593a9771948SGleb Smirnoff } 1594a9771948SGleb Smirnoff cif->vhif_nvrs++; 1595a9771948SGleb Smirnoff } 1596a9771948SGleb Smirnoff } 1597a9771948SGleb Smirnoff 1598a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1599a9771948SGleb Smirnoff sc->sc_naddrs6++; 1600a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_flags |= IFF_UP; 1601a9771948SGleb Smirnoff if (own) 1602a9771948SGleb Smirnoff sc->sc_advskew = 0; 1603a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1604a9771948SGleb Smirnoff carp_setrun(sc, 0); 1605a9771948SGleb Smirnoff 1606a9771948SGleb Smirnoff return (0); 1607a9771948SGleb Smirnoff 1608a9771948SGleb Smirnoff cleanup: 1609a9771948SGleb Smirnoff /* clean up multicast memberships */ 1610a9771948SGleb Smirnoff if (!sc->sc_naddrs6) { 1611a9771948SGleb Smirnoff while (!LIST_EMPTY(&im6o->im6o_memberships)) { 1612a9771948SGleb Smirnoff imm = LIST_FIRST(&im6o->im6o_memberships); 1613a9771948SGleb Smirnoff LIST_REMOVE(imm, i6mm_chain); 1614a9771948SGleb Smirnoff in6_leavegroup(imm); 1615a9771948SGleb Smirnoff } 1616a9771948SGleb Smirnoff } 1617a9771948SGleb Smirnoff return (error); 1618a9771948SGleb Smirnoff } 1619a9771948SGleb Smirnoff 1620a9771948SGleb Smirnoff int 1621a9771948SGleb Smirnoff carp_del_addr6(struct carp_softc *sc, struct sockaddr_in6 *sin6) 1622a9771948SGleb Smirnoff { 1623a9771948SGleb Smirnoff int error = 0; 1624a9771948SGleb Smirnoff 1625a9771948SGleb Smirnoff if (!--sc->sc_naddrs6) { 1626a9771948SGleb Smirnoff struct carp_if *cif = (struct carp_if *)sc->sc_ifp->if_carp; 1627a9771948SGleb Smirnoff struct ip6_moptions *im6o = &sc->sc_im6o; 1628a9771948SGleb Smirnoff 1629a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1630a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_flags &= ~(IFF_UP|IFF_RUNNING); 1631a9771948SGleb Smirnoff sc->sc_vhid = -1; 1632a9771948SGleb Smirnoff CARP_LOCK(cif); 1633a9771948SGleb Smirnoff while (!LIST_EMPTY(&im6o->im6o_memberships)) { 1634a9771948SGleb Smirnoff struct in6_multi_mship *imm = 1635a9771948SGleb Smirnoff LIST_FIRST(&im6o->im6o_memberships); 1636a9771948SGleb Smirnoff 1637a9771948SGleb Smirnoff LIST_REMOVE(imm, i6mm_chain); 1638a9771948SGleb Smirnoff in6_leavegroup(imm); 1639a9771948SGleb Smirnoff } 1640a9771948SGleb Smirnoff im6o->im6o_multicast_ifp = NULL; 1641a9771948SGleb Smirnoff TAILQ_REMOVE(&cif->vhif_vrs, sc, sc_list); 1642a9771948SGleb Smirnoff if (!--cif->vhif_nvrs) { 1643a9771948SGleb Smirnoff CARP_LOCK_DESTROY(cif); 1644a9771948SGleb Smirnoff sc->sc_ifp->if_carp = NULL; 1645a9771948SGleb Smirnoff FREE(cif, M_IFADDR); 1646a9771948SGleb Smirnoff } else 1647a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1648a9771948SGleb Smirnoff } 1649a9771948SGleb Smirnoff 1650a9771948SGleb Smirnoff return (error); 1651a9771948SGleb Smirnoff } 1652a9771948SGleb Smirnoff #endif /* INET6 */ 1653a9771948SGleb Smirnoff 1654a9771948SGleb Smirnoff int 1655a9771948SGleb Smirnoff carp_ioctl(struct ifnet *ifp, u_long cmd, caddr_t addr) 1656a9771948SGleb Smirnoff { 1657a9771948SGleb Smirnoff struct carp_softc *sc = ifp->if_softc, *vr; 1658a9771948SGleb Smirnoff struct carpreq carpr; 1659a9771948SGleb Smirnoff struct ifaddr *ifa; 1660a9771948SGleb Smirnoff struct ifreq *ifr; 1661a9771948SGleb Smirnoff struct ifaliasreq *ifra; 1662a9771948SGleb Smirnoff int error = 0; 1663a9771948SGleb Smirnoff 1664a9771948SGleb Smirnoff ifa = (struct ifaddr *)addr; 1665a9771948SGleb Smirnoff ifra = (struct ifaliasreq *)addr; 1666a9771948SGleb Smirnoff ifr = (struct ifreq *)addr; 1667a9771948SGleb Smirnoff 1668a9771948SGleb Smirnoff switch (cmd) { 1669a9771948SGleb Smirnoff case SIOCSIFADDR: 1670a9771948SGleb Smirnoff switch (ifa->ifa_addr->sa_family) { 1671a9771948SGleb Smirnoff #ifdef INET 1672a9771948SGleb Smirnoff case AF_INET: 1673a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1674a9771948SGleb Smirnoff bcopy(ifa->ifa_addr, ifa->ifa_dstaddr, 1675a9771948SGleb Smirnoff sizeof(struct sockaddr)); 1676a9771948SGleb Smirnoff error = carp_set_addr(sc, satosin(ifa->ifa_addr)); 1677a9771948SGleb Smirnoff break; 1678a9771948SGleb Smirnoff #endif /* INET */ 1679a9771948SGleb Smirnoff #ifdef INET6 1680a9771948SGleb Smirnoff case AF_INET6: 1681a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1682a9771948SGleb Smirnoff error = carp_set_addr6(sc, satosin6(ifa->ifa_addr)); 1683a9771948SGleb Smirnoff break; 1684a9771948SGleb Smirnoff #endif /* INET6 */ 1685a9771948SGleb Smirnoff default: 1686a9771948SGleb Smirnoff error = EAFNOSUPPORT; 1687a9771948SGleb Smirnoff break; 1688a9771948SGleb Smirnoff } 1689a9771948SGleb Smirnoff break; 1690a9771948SGleb Smirnoff 1691a9771948SGleb Smirnoff case SIOCAIFADDR: 1692a9771948SGleb Smirnoff switch (ifa->ifa_addr->sa_family) { 1693a9771948SGleb Smirnoff #ifdef INET 1694a9771948SGleb Smirnoff case AF_INET: 1695a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1696a9771948SGleb Smirnoff bcopy(ifa->ifa_addr, ifa->ifa_dstaddr, 1697a9771948SGleb Smirnoff sizeof(struct sockaddr)); 1698a9771948SGleb Smirnoff error = carp_set_addr(sc, satosin(&ifra->ifra_addr)); 1699a9771948SGleb Smirnoff break; 1700a9771948SGleb Smirnoff #endif /* INET */ 1701a9771948SGleb Smirnoff #ifdef INET6 1702a9771948SGleb Smirnoff case AF_INET6: 1703a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1704a9771948SGleb Smirnoff error = carp_set_addr6(sc, satosin6(&ifra->ifra_addr)); 1705a9771948SGleb Smirnoff break; 1706a9771948SGleb Smirnoff #endif /* INET6 */ 1707a9771948SGleb Smirnoff default: 1708a9771948SGleb Smirnoff error = EAFNOSUPPORT; 1709a9771948SGleb Smirnoff break; 1710a9771948SGleb Smirnoff } 1711a9771948SGleb Smirnoff break; 1712a9771948SGleb Smirnoff 1713a9771948SGleb Smirnoff case SIOCDIFADDR: 1714a9771948SGleb Smirnoff sc->if_flags &= ~IFF_UP; 1715a9771948SGleb Smirnoff switch (ifa->ifa_addr->sa_family) { 1716a9771948SGleb Smirnoff #ifdef INET 1717a9771948SGleb Smirnoff case AF_INET: 1718a9771948SGleb Smirnoff error = carp_del_addr(sc, satosin(&ifra->ifra_addr)); 1719a9771948SGleb Smirnoff break; 1720a9771948SGleb Smirnoff #endif /* INET */ 1721a9771948SGleb Smirnoff #ifdef INET6 1722a9771948SGleb Smirnoff case AF_INET6: 1723a9771948SGleb Smirnoff error = carp_del_addr6(sc, satosin6(&ifra->ifra_addr)); 1724a9771948SGleb Smirnoff break; 1725a9771948SGleb Smirnoff #endif /* INET6 */ 1726a9771948SGleb Smirnoff default: 1727a9771948SGleb Smirnoff error = EAFNOSUPPORT; 1728a9771948SGleb Smirnoff break; 1729a9771948SGleb Smirnoff } 1730a9771948SGleb Smirnoff break; 1731a9771948SGleb Smirnoff 1732a9771948SGleb Smirnoff case SIOCSIFFLAGS: 1733a9771948SGleb Smirnoff if (sc->sc_state != INIT && !(ifr->ifr_flags & IFF_UP)) { 1734a9771948SGleb Smirnoff sc->if_flags &= ~IFF_UP; 1735a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1736a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 1737a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 1738a9771948SGleb Smirnoff if (sc->sc_state == MASTER) 1739a9771948SGleb Smirnoff carp_send_ad(sc); 1740a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1741a9771948SGleb Smirnoff carp_setrun(sc, 0); 1742a9771948SGleb Smirnoff } else if (sc->sc_state == INIT && (ifr->ifr_flags & IFF_UP)) { 1743a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1744a9771948SGleb Smirnoff carp_setrun(sc, 0); 1745a9771948SGleb Smirnoff } 1746a9771948SGleb Smirnoff break; 1747a9771948SGleb Smirnoff 1748a9771948SGleb Smirnoff case SIOCSVH: 1749a9771948SGleb Smirnoff if ((error = suser(curthread)) != 0) 1750a9771948SGleb Smirnoff break; 1751a9771948SGleb Smirnoff if ((error = copyin(ifr->ifr_data, &carpr, sizeof carpr))) 1752a9771948SGleb Smirnoff break; 1753a9771948SGleb Smirnoff error = 1; 1754a9771948SGleb Smirnoff if (sc->sc_state != INIT && carpr.carpr_state != sc->sc_state) { 1755a9771948SGleb Smirnoff switch (carpr.carpr_state) { 1756a9771948SGleb Smirnoff case BACKUP: 1757a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1758a9771948SGleb Smirnoff carp_set_state(sc, BACKUP); 1759a9771948SGleb Smirnoff carp_setrun(sc, 0); 1760a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 1761a9771948SGleb Smirnoff break; 1762a9771948SGleb Smirnoff case MASTER: 1763a9771948SGleb Smirnoff carp_master_down(sc); 1764a9771948SGleb Smirnoff break; 1765a9771948SGleb Smirnoff default: 1766a9771948SGleb Smirnoff break; 1767a9771948SGleb Smirnoff } 1768a9771948SGleb Smirnoff } 1769a9771948SGleb Smirnoff if (carpr.carpr_vhid > 0) { 1770a9771948SGleb Smirnoff if (carpr.carpr_vhid > 255) { 1771a9771948SGleb Smirnoff error = EINVAL; 1772a9771948SGleb Smirnoff break; 1773a9771948SGleb Smirnoff } 1774a9771948SGleb Smirnoff if (sc->sc_ifp) { 1775a9771948SGleb Smirnoff struct carp_if *cif; 1776a9771948SGleb Smirnoff cif = (struct carp_if *)sc->sc_ifp->if_carp; 1777a9771948SGleb Smirnoff CARP_LOCK(cif); 1778a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) 1779a9771948SGleb Smirnoff if (vr != sc && 1780a9771948SGleb Smirnoff vr->sc_vhid == carpr.carpr_vhid) { 1781a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1782a9771948SGleb Smirnoff return EINVAL; 1783a9771948SGleb Smirnoff } 1784a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1785a9771948SGleb Smirnoff } 1786a9771948SGleb Smirnoff sc->sc_vhid = carpr.carpr_vhid; 1787a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[0] = 0; 1788a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[1] = 0; 1789a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[2] = 0x5e; 1790a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[3] = 0; 1791a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[4] = 1; 1792a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[5] = sc->sc_vhid; 1793a9771948SGleb Smirnoff error--; 1794a9771948SGleb Smirnoff } 1795a9771948SGleb Smirnoff if (carpr.carpr_advbase > 0 || carpr.carpr_advskew > 0) { 1796a9771948SGleb Smirnoff if (carpr.carpr_advskew >= 255) { 1797a9771948SGleb Smirnoff error = EINVAL; 1798a9771948SGleb Smirnoff break; 1799a9771948SGleb Smirnoff } 1800a9771948SGleb Smirnoff if (carpr.carpr_advbase > 255) { 1801a9771948SGleb Smirnoff error = EINVAL; 1802a9771948SGleb Smirnoff break; 1803a9771948SGleb Smirnoff } 1804a9771948SGleb Smirnoff sc->sc_advbase = carpr.carpr_advbase; 1805a9771948SGleb Smirnoff sc->sc_advskew = carpr.carpr_advskew; 1806a9771948SGleb Smirnoff error--; 1807a9771948SGleb Smirnoff } 1808a9771948SGleb Smirnoff bcopy(carpr.carpr_key, sc->sc_key, sizeof(sc->sc_key)); 1809a9771948SGleb Smirnoff if (error > 0) 1810a9771948SGleb Smirnoff error = EINVAL; 1811a9771948SGleb Smirnoff else { 1812a9771948SGleb Smirnoff error = 0; 1813a9771948SGleb Smirnoff carp_setrun(sc, 0); 1814a9771948SGleb Smirnoff } 1815a9771948SGleb Smirnoff break; 1816a9771948SGleb Smirnoff 1817a9771948SGleb Smirnoff case SIOCGVH: 1818a9771948SGleb Smirnoff bzero(&carpr, sizeof(carpr)); 1819a9771948SGleb Smirnoff carpr.carpr_state = sc->sc_state; 1820a9771948SGleb Smirnoff carpr.carpr_vhid = sc->sc_vhid; 1821a9771948SGleb Smirnoff carpr.carpr_advbase = sc->sc_advbase; 1822a9771948SGleb Smirnoff carpr.carpr_advskew = sc->sc_advskew; 1823a9771948SGleb Smirnoff if (suser(curthread) == 0) 1824a9771948SGleb Smirnoff bcopy(sc->sc_key, carpr.carpr_key, 1825a9771948SGleb Smirnoff sizeof(carpr.carpr_key)); 1826a9771948SGleb Smirnoff error = copyout(&carpr, ifr->ifr_data, sizeof(carpr)); 1827a9771948SGleb Smirnoff break; 1828a9771948SGleb Smirnoff 1829a9771948SGleb Smirnoff default: 1830a9771948SGleb Smirnoff error = EINVAL; 1831a9771948SGleb Smirnoff } 1832a9771948SGleb Smirnoff 1833a9771948SGleb Smirnoff carp_hmac_prepare(sc); 1834a9771948SGleb Smirnoff return (error); 1835a9771948SGleb Smirnoff } 1836a9771948SGleb Smirnoff 1837a9771948SGleb Smirnoff /* 1838a9771948SGleb Smirnoff * XXX: this is looutput. We should eventually use it from there. 1839a9771948SGleb Smirnoff */ 1840a9771948SGleb Smirnoff static int 1841a9771948SGleb Smirnoff carp_looutput(struct ifnet *ifp, struct mbuf *m, struct sockaddr *dst, 1842a9771948SGleb Smirnoff struct rtentry *rt) 1843a9771948SGleb Smirnoff { 1844a9771948SGleb Smirnoff M_ASSERTPKTHDR(m); /* check if we have the packet header */ 1845a9771948SGleb Smirnoff 1846a9771948SGleb Smirnoff if (rt && rt->rt_flags & (RTF_REJECT|RTF_BLACKHOLE)) { 1847a9771948SGleb Smirnoff m_freem(m); 1848a9771948SGleb Smirnoff return (rt->rt_flags & RTF_BLACKHOLE ? 0 : 1849a9771948SGleb Smirnoff rt->rt_flags & RTF_HOST ? EHOSTUNREACH : ENETUNREACH); 1850a9771948SGleb Smirnoff } 1851a9771948SGleb Smirnoff 1852a9771948SGleb Smirnoff ifp->if_opackets++; 1853a9771948SGleb Smirnoff ifp->if_obytes += m->m_pkthdr.len; 1854a9771948SGleb Smirnoff #if 1 /* XXX */ 1855a9771948SGleb Smirnoff switch (dst->sa_family) { 1856a9771948SGleb Smirnoff case AF_INET: 1857a9771948SGleb Smirnoff case AF_INET6: 1858a9771948SGleb Smirnoff case AF_IPX: 1859a9771948SGleb Smirnoff case AF_APPLETALK: 1860a9771948SGleb Smirnoff break; 1861a9771948SGleb Smirnoff default: 1862a9771948SGleb Smirnoff printf("carp_looutput: af=%d unexpected\n", dst->sa_family); 1863a9771948SGleb Smirnoff m_freem(m); 1864a9771948SGleb Smirnoff return (EAFNOSUPPORT); 1865a9771948SGleb Smirnoff } 1866a9771948SGleb Smirnoff #endif 1867a9771948SGleb Smirnoff return(if_simloop(ifp, m, dst->sa_family, 0)); 1868a9771948SGleb Smirnoff } 1869a9771948SGleb Smirnoff 1870a9771948SGleb Smirnoff /* 1871a9771948SGleb Smirnoff * Start output on carp interface. This function should never be called. 1872a9771948SGleb Smirnoff */ 1873a9771948SGleb Smirnoff void 1874a9771948SGleb Smirnoff carp_start(struct ifnet *ifp) 1875a9771948SGleb Smirnoff { 1876a9771948SGleb Smirnoff #ifdef DEBUG 1877a9771948SGleb Smirnoff printf("%s: start called\n", ifp->if_xname); 1878a9771948SGleb Smirnoff #endif 1879a9771948SGleb Smirnoff } 1880a9771948SGleb Smirnoff 1881a9771948SGleb Smirnoff int 1882a9771948SGleb Smirnoff carp_output(struct ifnet *ifp, struct mbuf *m, struct sockaddr *sa, 1883a9771948SGleb Smirnoff struct rtentry *rt) 1884a9771948SGleb Smirnoff { 1885a9771948SGleb Smirnoff struct m_tag *mtag; 1886a9771948SGleb Smirnoff struct carp_softc *sc; 1887a9771948SGleb Smirnoff struct ifnet *carp_ifp; 1888a9771948SGleb Smirnoff 1889a9771948SGleb Smirnoff if (!sa) 1890a9771948SGleb Smirnoff return (0); 1891a9771948SGleb Smirnoff 1892a9771948SGleb Smirnoff switch (sa->sa_family) { 1893a9771948SGleb Smirnoff #ifdef INET 1894a9771948SGleb Smirnoff case AF_INET: 1895a9771948SGleb Smirnoff break; 1896a9771948SGleb Smirnoff #endif /* INET */ 1897a9771948SGleb Smirnoff #ifdef INET6 1898a9771948SGleb Smirnoff case AF_INET6: 1899a9771948SGleb Smirnoff break; 1900a9771948SGleb Smirnoff #endif /* INET6 */ 1901a9771948SGleb Smirnoff default: 1902a9771948SGleb Smirnoff return (0); 1903a9771948SGleb Smirnoff } 1904a9771948SGleb Smirnoff 1905a9771948SGleb Smirnoff mtag = m_tag_find(m, PACKET_TAG_CARP, NULL); 1906a9771948SGleb Smirnoff if (mtag == NULL) 1907a9771948SGleb Smirnoff return (0); 1908a9771948SGleb Smirnoff 1909a9771948SGleb Smirnoff bcopy(mtag + 1, &carp_ifp, sizeof(struct ifnet *)); 1910a9771948SGleb Smirnoff sc = carp_ifp->if_softc; 1911a9771948SGleb Smirnoff 1912a9771948SGleb Smirnoff /* Set the source MAC address to Virtual Router MAC Address */ 1913a9771948SGleb Smirnoff switch (ifp->if_type) { 1914a9771948SGleb Smirnoff case IFT_ETHER: { 1915a9771948SGleb Smirnoff struct ether_header *eh; 1916a9771948SGleb Smirnoff 1917a9771948SGleb Smirnoff eh = mtod(m, struct ether_header *); 1918a9771948SGleb Smirnoff eh->ether_shost[0] = 0; 1919a9771948SGleb Smirnoff eh->ether_shost[1] = 0; 1920a9771948SGleb Smirnoff eh->ether_shost[2] = 0x5e; 1921a9771948SGleb Smirnoff eh->ether_shost[3] = 0; 1922a9771948SGleb Smirnoff eh->ether_shost[4] = 1; 1923a9771948SGleb Smirnoff eh->ether_shost[5] = sc->sc_vhid; 1924a9771948SGleb Smirnoff } 1925a9771948SGleb Smirnoff break; 1926a9771948SGleb Smirnoff case IFT_FDDI: { 1927a9771948SGleb Smirnoff struct fddi_header *fh; 1928a9771948SGleb Smirnoff 1929a9771948SGleb Smirnoff fh = mtod(m, struct fddi_header *); 1930a9771948SGleb Smirnoff fh->fddi_shost[0] = 0; 1931a9771948SGleb Smirnoff fh->fddi_shost[1] = 0; 1932a9771948SGleb Smirnoff fh->fddi_shost[2] = 0x5e; 1933a9771948SGleb Smirnoff fh->fddi_shost[3] = 0; 1934a9771948SGleb Smirnoff fh->fddi_shost[4] = 1; 1935a9771948SGleb Smirnoff fh->fddi_shost[5] = sc->sc_vhid; 1936a9771948SGleb Smirnoff } 1937a9771948SGleb Smirnoff break; 1938a9771948SGleb Smirnoff case IFT_ISO88025: { 1939a9771948SGleb Smirnoff struct iso88025_header *th; 1940a9771948SGleb Smirnoff th = mtod(m, struct iso88025_header *); 1941a9771948SGleb Smirnoff th->iso88025_shost[0] = 3; 1942a9771948SGleb Smirnoff th->iso88025_shost[1] = 0; 1943a9771948SGleb Smirnoff th->iso88025_shost[2] = 0x40 >> (sc->sc_vhid - 1); 1944a9771948SGleb Smirnoff th->iso88025_shost[3] = 0x40000 >> (sc->sc_vhid - 1); 1945a9771948SGleb Smirnoff th->iso88025_shost[4] = 0; 1946a9771948SGleb Smirnoff th->iso88025_shost[5] = 0; 1947a9771948SGleb Smirnoff } 1948a9771948SGleb Smirnoff break; 1949a9771948SGleb Smirnoff default: 1950a9771948SGleb Smirnoff printf("%s: carp is not supported for this interface type\n", 1951a9771948SGleb Smirnoff ifp->if_xname); 1952a9771948SGleb Smirnoff return (EOPNOTSUPP); 1953a9771948SGleb Smirnoff } 1954a9771948SGleb Smirnoff 1955a9771948SGleb Smirnoff return (0); 1956a9771948SGleb Smirnoff } 1957a9771948SGleb Smirnoff 1958a9771948SGleb Smirnoff void 1959a9771948SGleb Smirnoff carp_set_state(struct carp_softc *sc, int state) 1960a9771948SGleb Smirnoff { 1961a9771948SGleb Smirnoff if (sc->sc_state == state) 1962a9771948SGleb Smirnoff return; 1963a9771948SGleb Smirnoff 1964a9771948SGleb Smirnoff sc->sc_state = state; 1965a9771948SGleb Smirnoff switch (state) { 1966a9771948SGleb Smirnoff case BACKUP: 1967a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_link_state = LINK_STATE_DOWN; 1968a9771948SGleb Smirnoff break; 1969a9771948SGleb Smirnoff case MASTER: 1970a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_link_state = LINK_STATE_UP; 1971a9771948SGleb Smirnoff break; 1972a9771948SGleb Smirnoff default: 1973a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_link_state = LINK_STATE_UNKNOWN; 1974a9771948SGleb Smirnoff break; 1975a9771948SGleb Smirnoff } 1976a9771948SGleb Smirnoff rt_ifmsg(&sc->sc_ac.ac_if); 1977a9771948SGleb Smirnoff } 1978a9771948SGleb Smirnoff 1979a9771948SGleb Smirnoff void 1980a9771948SGleb Smirnoff carp_carpdev_state(void *v) 1981a9771948SGleb Smirnoff { 1982a9771948SGleb Smirnoff struct carp_if *cif = v; 1983a9771948SGleb Smirnoff struct carp_softc *sc; 1984a9771948SGleb Smirnoff 1985a9771948SGleb Smirnoff CARP_LOCK(cif); 1986a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &cif->vhif_vrs, sc_list) { 19876fba4c0bSGleb Smirnoff if (sc->sc_ifp->if_link_state != LINK_STATE_UP || 1988a9771948SGleb Smirnoff !(sc->sc_ifp->if_flags & IFF_UP)) { 1989a9771948SGleb Smirnoff sc->sc_flags_backup = sc->sc_if.if_flags; 1990a9771948SGleb Smirnoff sc->sc_if.if_flags &= ~(IFF_UP|IFF_RUNNING); 1991a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1992a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 1993a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 1994a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1995a9771948SGleb Smirnoff carp_setrun(sc, 0); 1996a9771948SGleb Smirnoff if (!sc->sc_suppress) { 1997a9771948SGleb Smirnoff carp_suppress_preempt++; 1998a9771948SGleb Smirnoff if (carp_suppress_preempt == 1) 1999a9771948SGleb Smirnoff carp_send_ad_all(); 2000a9771948SGleb Smirnoff } 2001a9771948SGleb Smirnoff sc->sc_suppress = 1; 2002a9771948SGleb Smirnoff } else { 2003a9771948SGleb Smirnoff sc->sc_if.if_flags |= sc->sc_flags_backup; 2004a9771948SGleb Smirnoff carp_set_state(sc, INIT); 2005a9771948SGleb Smirnoff carp_setrun(sc, 0); 2006a9771948SGleb Smirnoff if (sc->sc_suppress) 2007a9771948SGleb Smirnoff carp_suppress_preempt--; 2008a9771948SGleb Smirnoff sc->sc_suppress = 0; 2009a9771948SGleb Smirnoff } 2010a9771948SGleb Smirnoff } 2011a9771948SGleb Smirnoff CARP_UNLOCK(cif); 2012a9771948SGleb Smirnoff } 2013a9771948SGleb Smirnoff 2014a9771948SGleb Smirnoff static int 2015a9771948SGleb Smirnoff carp_modevent(module_t mod, int type, void *data) 2016a9771948SGleb Smirnoff { 2017a9771948SGleb Smirnoff int error = 0; 2018a9771948SGleb Smirnoff 2019a9771948SGleb Smirnoff switch (type) { 2020a9771948SGleb Smirnoff case MOD_LOAD: 2021a9771948SGleb Smirnoff LIST_INIT(&carpif_list); 2022a9771948SGleb Smirnoff if_clone_attach(&carp_cloner); 2023a9771948SGleb Smirnoff printf("carp: attached\n"); 2024a9771948SGleb Smirnoff break; 2025a9771948SGleb Smirnoff 2026a9771948SGleb Smirnoff case MOD_UNLOAD: 2027a9771948SGleb Smirnoff if_clone_detach(&carp_cloner); 2028a9771948SGleb Smirnoff while (!LIST_EMPTY(&carpif_list)) 2029a9771948SGleb Smirnoff carp_clone_destroy( 2030a9771948SGleb Smirnoff &LIST_FIRST(&carpif_list)->sc_if); 2031a9771948SGleb Smirnoff break; 2032a9771948SGleb Smirnoff 2033a9771948SGleb Smirnoff default: 2034a9771948SGleb Smirnoff error = EINVAL; 2035a9771948SGleb Smirnoff break; 2036a9771948SGleb Smirnoff } 2037a9771948SGleb Smirnoff 2038a9771948SGleb Smirnoff return error; 2039a9771948SGleb Smirnoff } 2040a9771948SGleb Smirnoff 2041a9771948SGleb Smirnoff static moduledata_t carp_mod = { 2042a9771948SGleb Smirnoff "carp", 2043a9771948SGleb Smirnoff carp_modevent, 2044a9771948SGleb Smirnoff 0 2045a9771948SGleb Smirnoff }; 2046a9771948SGleb Smirnoff 2047a9771948SGleb Smirnoff DECLARE_MODULE(carp, carp_mod, SI_SUB_PSEUDO, SI_ORDER_ANY); 2048