1a9771948SGleb Smirnoff /* $FreeBSD$ */ 2a9771948SGleb Smirnoff 3a9771948SGleb Smirnoff /* 4a9771948SGleb Smirnoff * Copyright (c) 2002 Michael Shalayeff. All rights reserved. 5a9771948SGleb Smirnoff * Copyright (c) 2003 Ryan McBride. All rights reserved. 6a9771948SGleb Smirnoff * 7a9771948SGleb Smirnoff * Redistribution and use in source and binary forms, with or without 8a9771948SGleb Smirnoff * modification, are permitted provided that the following conditions 9a9771948SGleb Smirnoff * are met: 10a9771948SGleb Smirnoff * 1. Redistributions of source code must retain the above copyright 11a9771948SGleb Smirnoff * notice, this list of conditions and the following disclaimer. 12a9771948SGleb Smirnoff * 2. Redistributions in binary form must reproduce the above copyright 13a9771948SGleb Smirnoff * notice, this list of conditions and the following disclaimer in the 14a9771948SGleb Smirnoff * documentation and/or other materials provided with the distribution. 15a9771948SGleb Smirnoff * 16a9771948SGleb Smirnoff * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR 17a9771948SGleb Smirnoff * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES 18a9771948SGleb Smirnoff * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. 19a9771948SGleb Smirnoff * IN NO EVENT SHALL THE AUTHOR OR HIS RELATIVES BE LIABLE FOR ANY DIRECT, 20a9771948SGleb Smirnoff * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES 21a9771948SGleb Smirnoff * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR 22a9771948SGleb Smirnoff * SERVICES; LOSS OF MIND, USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 23a9771948SGleb Smirnoff * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 24a9771948SGleb Smirnoff * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING 25a9771948SGleb Smirnoff * IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF 26a9771948SGleb Smirnoff * THE POSSIBILITY OF SUCH DAMAGE. 27a9771948SGleb Smirnoff */ 28a9771948SGleb Smirnoff 29a9771948SGleb Smirnoff #include "opt_carp.h" 30a9771948SGleb Smirnoff #include "opt_bpf.h" 31a9771948SGleb Smirnoff #include "opt_inet.h" 32a9771948SGleb Smirnoff #include "opt_inet6.h" 33a9771948SGleb Smirnoff 34a9771948SGleb Smirnoff #include <sys/types.h> 35a9771948SGleb Smirnoff #include <sys/param.h> 36a9771948SGleb Smirnoff #include <sys/systm.h> 37a9771948SGleb Smirnoff #include <sys/conf.h> 38a9771948SGleb Smirnoff #include <sys/kernel.h> 39a9771948SGleb Smirnoff #include <sys/limits.h> 40a9771948SGleb Smirnoff #include <sys/malloc.h> 41a9771948SGleb Smirnoff #include <sys/mbuf.h> 42a9771948SGleb Smirnoff #include <sys/module.h> 43a9771948SGleb Smirnoff #include <sys/time.h> 44a9771948SGleb Smirnoff #include <sys/proc.h> 45a9771948SGleb Smirnoff #include <sys/sysctl.h> 46a9771948SGleb Smirnoff #include <sys/syslog.h> 47a9771948SGleb Smirnoff #include <sys/signalvar.h> 48a9771948SGleb Smirnoff #include <sys/filio.h> 49a9771948SGleb Smirnoff #include <sys/sockio.h> 50a9771948SGleb Smirnoff 51a9771948SGleb Smirnoff #include <sys/socket.h> 52a9771948SGleb Smirnoff #include <sys/vnode.h> 53a9771948SGleb Smirnoff 54a9771948SGleb Smirnoff #include <machine/stdarg.h> 55a9771948SGleb Smirnoff 56a9771948SGleb Smirnoff #include <net/bpf.h> 57a9771948SGleb Smirnoff #include <net/ethernet.h> 58a9771948SGleb Smirnoff #include <net/fddi.h> 59a9771948SGleb Smirnoff #include <net/iso88025.h> 60a9771948SGleb Smirnoff #include <net/if.h> 61a9771948SGleb Smirnoff #include <net/if_clone.h> 62a9771948SGleb Smirnoff #include <net/if_types.h> 63a9771948SGleb Smirnoff #include <net/route.h> 64a9771948SGleb Smirnoff 65a9771948SGleb Smirnoff #ifdef INET 66a9771948SGleb Smirnoff #include <netinet/in.h> 67a9771948SGleb Smirnoff #include <netinet/in_var.h> 68a9771948SGleb Smirnoff #include <netinet/in_systm.h> 69a9771948SGleb Smirnoff #include <netinet/ip.h> 70a9771948SGleb Smirnoff #include <netinet/ip_var.h> 71a9771948SGleb Smirnoff #include <netinet/if_ether.h> 72a9771948SGleb Smirnoff #include <machine/in_cksum.h> 73a9771948SGleb Smirnoff #endif 74a9771948SGleb Smirnoff 75a9771948SGleb Smirnoff #ifdef INET6 76a9771948SGleb Smirnoff #include <netinet/icmp6.h> 77a9771948SGleb Smirnoff #include <netinet/ip6.h> 78a9771948SGleb Smirnoff #include <netinet6/ip6_var.h> 79a9771948SGleb Smirnoff #include <netinet6/nd6.h> 80a9771948SGleb Smirnoff #include <net/if_dl.h> 81a9771948SGleb Smirnoff #endif 82a9771948SGleb Smirnoff 83a9771948SGleb Smirnoff #include <crypto/sha1.h> 84a9771948SGleb Smirnoff #include <netinet/ip_carp.h> 85a9771948SGleb Smirnoff 86a9771948SGleb Smirnoff #define CARP_IFNAME "carp" 87a9771948SGleb Smirnoff static MALLOC_DEFINE(M_CARP, "CARP", "CARP interfaces"); 88a9771948SGleb Smirnoff SYSCTL_DECL(_net_inet_carp); 89a9771948SGleb Smirnoff 90a9771948SGleb Smirnoff struct carp_softc { 91a9771948SGleb Smirnoff struct arpcom sc_ac; /* Interface clue */ 92e8c34a71SGleb Smirnoff #define sc_if sc_ac.ac_if 93e8c34a71SGleb Smirnoff #define sc_carpdev sc_ac.ac_if.if_carpdev 94a9771948SGleb Smirnoff struct in_ifaddr *sc_ia; /* primary iface address */ 95a9771948SGleb Smirnoff struct ip_moptions sc_imo; 96a9771948SGleb Smirnoff #ifdef INET6 97a9771948SGleb Smirnoff struct in6_ifaddr *sc_ia6; /* primary iface address v6 */ 98a9771948SGleb Smirnoff struct ip6_moptions sc_im6o; 99a9771948SGleb Smirnoff #endif /* INET6 */ 100a9771948SGleb Smirnoff TAILQ_ENTRY(carp_softc) sc_list; 101a9771948SGleb Smirnoff 102a9771948SGleb Smirnoff enum { INIT = 0, BACKUP, MASTER } sc_state; 103a9771948SGleb Smirnoff 104a9771948SGleb Smirnoff int sc_flags_backup; 105a9771948SGleb Smirnoff int sc_suppress; 106a9771948SGleb Smirnoff 107a9771948SGleb Smirnoff int sc_sendad_errors; 108a9771948SGleb Smirnoff #define CARP_SENDAD_MAX_ERRORS 3 109a9771948SGleb Smirnoff int sc_sendad_success; 110a9771948SGleb Smirnoff #define CARP_SENDAD_MIN_SUCCESS 3 111a9771948SGleb Smirnoff 112a9771948SGleb Smirnoff int sc_vhid; 113a9771948SGleb Smirnoff int sc_advskew; 114a9771948SGleb Smirnoff int sc_naddrs; 115a9771948SGleb Smirnoff int sc_naddrs6; 116a9771948SGleb Smirnoff int sc_advbase; /* seconds */ 117a9771948SGleb Smirnoff int sc_init_counter; 118a9771948SGleb Smirnoff u_int64_t sc_counter; 119a9771948SGleb Smirnoff 120a9771948SGleb Smirnoff /* authentication */ 121a9771948SGleb Smirnoff #define CARP_HMAC_PAD 64 122a9771948SGleb Smirnoff unsigned char sc_key[CARP_KEY_LEN]; 123a9771948SGleb Smirnoff unsigned char sc_pad[CARP_HMAC_PAD]; 124a9771948SGleb Smirnoff SHA1_CTX sc_sha1; 125a9771948SGleb Smirnoff 126a9771948SGleb Smirnoff struct callout sc_ad_tmo; /* advertisement timeout */ 127a9771948SGleb Smirnoff struct callout sc_md_tmo; /* master down timeout */ 128a9771948SGleb Smirnoff struct callout sc_md6_tmo; /* master down timeout */ 129a9771948SGleb Smirnoff 130a9771948SGleb Smirnoff LIST_ENTRY(carp_softc) sc_next; /* Interface clue */ 131a9771948SGleb Smirnoff }; 132a9771948SGleb Smirnoff 133a9771948SGleb Smirnoff int carp_suppress_preempt = 0; 134a9771948SGleb Smirnoff int carp_opts[CARPCTL_MAXID] = { 0, 1, 0, 1, 0, 0 }; /* XXX for now */ 135a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_ALLOW, allow, CTLFLAG_RW, 136a9771948SGleb Smirnoff &carp_opts[CARPCTL_ALLOW], 0, "Accept incoming CARP packets"); 137a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_PREEMPT, preempt, CTLFLAG_RW, 138a9771948SGleb Smirnoff &carp_opts[CARPCTL_PREEMPT], 0, "high-priority backup preemption mode"); 139a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_LOG, log, CTLFLAG_RW, 140a9771948SGleb Smirnoff &carp_opts[CARPCTL_LOG], 0, "log bad carp packets"); 141a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_ARPBALANCE, arpbalance, CTLFLAG_RW, 142a9771948SGleb Smirnoff &carp_opts[CARPCTL_ARPBALANCE], 0, "balance arp responses"); 143a9771948SGleb Smirnoff 144a9771948SGleb Smirnoff struct carpstats carpstats; 145a9771948SGleb Smirnoff SYSCTL_STRUCT(_net_inet_carp, CARPCTL_STATS, stats, CTLFLAG_RW, 146a9771948SGleb Smirnoff &carpstats, carpstats, 147a9771948SGleb Smirnoff "CARP statistics (struct carpstats, netinet/ip_carp.h)"); 148a9771948SGleb Smirnoff 149a9771948SGleb Smirnoff struct carp_if { 150a9771948SGleb Smirnoff TAILQ_HEAD(, carp_softc) vhif_vrs; 151a9771948SGleb Smirnoff int vhif_nvrs; 152a9771948SGleb Smirnoff 153a9771948SGleb Smirnoff struct ifnet *vhif_ifp; 154a9771948SGleb Smirnoff struct mtx vhif_mtx; 155a9771948SGleb Smirnoff }; 156a9771948SGleb Smirnoff /* lock per carp_if queue */ 157a9771948SGleb Smirnoff #define CARP_LOCK_INIT(cif) mtx_init(&(cif)->vhif_mtx, "carp", \ 158a9771948SGleb Smirnoff NULL, MTX_DEF) 159a9771948SGleb Smirnoff #define CARP_LOCK_DESTROY(cif) mtx_destroy(&(cif->vhif_mtx)) 160a9771948SGleb Smirnoff #define CARP_LOCK_ASSERT(cif) mtx_assert(&(cif)->vhif_mtx, MA_OWNED) 161a9771948SGleb Smirnoff #define CARP_LOCK(cif) mtx_lock(&(cif)->vhif_mtx) 162a9771948SGleb Smirnoff #define CARP_UNLOCK(cif) mtx_unlock(&(cif)->vhif_mtx) 163a9771948SGleb Smirnoff 164947b7cf3SGleb Smirnoff #define CARP_LOG(...) do { \ 1651e9e6572SGleb Smirnoff if (carp_opts[CARPCTL_LOG] > 0) \ 1661e9e6572SGleb Smirnoff log(LOG_INFO, __VA_ARGS__); \ 167947b7cf3SGleb Smirnoff } while (0) 1681e9e6572SGleb Smirnoff 169947b7cf3SGleb Smirnoff #define CARP_DEBUG(...) do { \ 1701e9e6572SGleb Smirnoff if (carp_opts[CARPCTL_LOG] > 1) \ 1711e9e6572SGleb Smirnoff log(LOG_DEBUG, __VA_ARGS__); \ 172947b7cf3SGleb Smirnoff } while (0) 173a9771948SGleb Smirnoff 1745c1f0f6dSGleb Smirnoff static void carp_hmac_prepare(struct carp_softc *); 1755c1f0f6dSGleb Smirnoff static void carp_hmac_generate(struct carp_softc *, u_int32_t *, 176a9771948SGleb Smirnoff unsigned char *); 1775c1f0f6dSGleb Smirnoff static int carp_hmac_verify(struct carp_softc *, u_int32_t *, 178a9771948SGleb Smirnoff unsigned char *); 1795c1f0f6dSGleb Smirnoff static void carp_setroute(struct carp_softc *, int); 1805c1f0f6dSGleb Smirnoff static void carp_input_c(struct mbuf *, struct carp_header *, sa_family_t); 1815c1f0f6dSGleb Smirnoff static int carp_clone_create(struct if_clone *, int); 1825c1f0f6dSGleb Smirnoff static void carp_clone_destroy(struct ifnet *); 1835c1f0f6dSGleb Smirnoff static void carpdetach(struct carp_softc *); 1845c1f0f6dSGleb Smirnoff static int carp_prepare_ad(struct mbuf *, struct carp_softc *, 185a9771948SGleb Smirnoff struct carp_header *); 1865c1f0f6dSGleb Smirnoff static void carp_send_ad_all(void); 1875c1f0f6dSGleb Smirnoff static void carp_send_ad(void *); 1885c1f0f6dSGleb Smirnoff static void carp_send_arp(struct carp_softc *); 1895c1f0f6dSGleb Smirnoff static void carp_master_down(void *); 1905c1f0f6dSGleb Smirnoff static int carp_ioctl(struct ifnet *, u_long, caddr_t); 191a9771948SGleb Smirnoff static int carp_looutput(struct ifnet *, struct mbuf *, struct sockaddr *, 192a9771948SGleb Smirnoff struct rtentry *); 1935c1f0f6dSGleb Smirnoff static void carp_start(struct ifnet *); 1945c1f0f6dSGleb Smirnoff static void carp_setrun(struct carp_softc *, sa_family_t); 1955c1f0f6dSGleb Smirnoff static void carp_set_state(struct carp_softc *, int); 1965c1f0f6dSGleb Smirnoff static int carp_addrcount(struct carp_if *, struct in_ifaddr *, int); 197a9771948SGleb Smirnoff enum { CARP_COUNT_MASTER, CARP_COUNT_RUNNING }; 198a9771948SGleb Smirnoff 1995c1f0f6dSGleb Smirnoff static int carp_set_addr(struct carp_softc *, struct sockaddr_in *); 2005c1f0f6dSGleb Smirnoff static int carp_del_addr(struct carp_softc *, struct sockaddr_in *); 201a9771948SGleb Smirnoff #ifdef INET6 2025c1f0f6dSGleb Smirnoff static void carp_send_na(struct carp_softc *); 2035c1f0f6dSGleb Smirnoff static int carp_set_addr6(struct carp_softc *, struct sockaddr_in6 *); 2045c1f0f6dSGleb Smirnoff static int carp_del_addr6(struct carp_softc *, struct sockaddr_in6 *); 205a9771948SGleb Smirnoff #endif 206a9771948SGleb Smirnoff 207a9771948SGleb Smirnoff static LIST_HEAD(, carp_softc) carpif_list; 208a9771948SGleb Smirnoff IFC_SIMPLE_DECLARE(carp, 0); 209a9771948SGleb Smirnoff 210a9771948SGleb Smirnoff static __inline u_int16_t 211a9771948SGleb Smirnoff carp_cksum(struct mbuf *m, int len) 212a9771948SGleb Smirnoff { 213a9771948SGleb Smirnoff return (in_cksum(m, len)); 214a9771948SGleb Smirnoff } 215a9771948SGleb Smirnoff 2165c1f0f6dSGleb Smirnoff static void 217a9771948SGleb Smirnoff carp_hmac_prepare(struct carp_softc *sc) 218a9771948SGleb Smirnoff { 219a9771948SGleb Smirnoff u_int8_t version = CARP_VERSION, type = CARP_ADVERTISEMENT; 220a9771948SGleb Smirnoff u_int8_t vhid = sc->sc_vhid & 0xff; 221a9771948SGleb Smirnoff struct ifaddr *ifa; 222a9771948SGleb Smirnoff int i; 223a9771948SGleb Smirnoff #ifdef INET6 224a9771948SGleb Smirnoff struct in6_addr in6; 225a9771948SGleb Smirnoff #endif 226a9771948SGleb Smirnoff 227a9771948SGleb Smirnoff /* compute ipad from key */ 228a9771948SGleb Smirnoff bzero(sc->sc_pad, sizeof(sc->sc_pad)); 229a9771948SGleb Smirnoff bcopy(sc->sc_key, sc->sc_pad, sizeof(sc->sc_key)); 230a9771948SGleb Smirnoff for (i = 0; i < sizeof(sc->sc_pad); i++) 231a9771948SGleb Smirnoff sc->sc_pad[i] ^= 0x36; 232a9771948SGleb Smirnoff 233a9771948SGleb Smirnoff /* precompute first part of inner hash */ 234a9771948SGleb Smirnoff SHA1Init(&sc->sc_sha1); 235a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, sc->sc_pad, sizeof(sc->sc_pad)); 236a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&version, sizeof(version)); 237a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&type, sizeof(type)); 238a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&vhid, sizeof(vhid)); 239a9771948SGleb Smirnoff #ifdef INET 240a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 241a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET) 242a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, 243a9771948SGleb Smirnoff (void *)&ifatoia(ifa)->ia_addr.sin_addr.s_addr, 244a9771948SGleb Smirnoff sizeof(struct in_addr)); 245a9771948SGleb Smirnoff } 246a9771948SGleb Smirnoff #endif /* INET */ 247a9771948SGleb Smirnoff #ifdef INET6 248a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 249a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET6) { 250a9771948SGleb Smirnoff in6 = ifatoia6(ifa)->ia_addr.sin6_addr; 251a9771948SGleb Smirnoff if (IN6_IS_ADDR_LINKLOCAL(&in6)) 252a9771948SGleb Smirnoff in6.s6_addr16[1] = 0; 253a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&in6, sizeof(in6)); 254a9771948SGleb Smirnoff } 255a9771948SGleb Smirnoff } 256a9771948SGleb Smirnoff #endif /* INET6 */ 257a9771948SGleb Smirnoff 258a9771948SGleb Smirnoff /* convert ipad to opad */ 259a9771948SGleb Smirnoff for (i = 0; i < sizeof(sc->sc_pad); i++) 260a9771948SGleb Smirnoff sc->sc_pad[i] ^= 0x36 ^ 0x5c; 261a9771948SGleb Smirnoff } 262a9771948SGleb Smirnoff 2635c1f0f6dSGleb Smirnoff static void 264a9771948SGleb Smirnoff carp_hmac_generate(struct carp_softc *sc, u_int32_t counter[2], 265a9771948SGleb Smirnoff unsigned char md[20]) 266a9771948SGleb Smirnoff { 267a9771948SGleb Smirnoff SHA1_CTX sha1ctx; 268a9771948SGleb Smirnoff 269a9771948SGleb Smirnoff /* fetch first half of inner hash */ 270a9771948SGleb Smirnoff bcopy(&sc->sc_sha1, &sha1ctx, sizeof(sha1ctx)); 271a9771948SGleb Smirnoff 272a9771948SGleb Smirnoff SHA1Update(&sha1ctx, (void *)counter, sizeof(sc->sc_counter)); 273a9771948SGleb Smirnoff SHA1Final(md, &sha1ctx); 274a9771948SGleb Smirnoff 275a9771948SGleb Smirnoff /* outer hash */ 276a9771948SGleb Smirnoff SHA1Init(&sha1ctx); 277a9771948SGleb Smirnoff SHA1Update(&sha1ctx, sc->sc_pad, sizeof(sc->sc_pad)); 278a9771948SGleb Smirnoff SHA1Update(&sha1ctx, md, 20); 279a9771948SGleb Smirnoff SHA1Final(md, &sha1ctx); 280a9771948SGleb Smirnoff } 281a9771948SGleb Smirnoff 2825c1f0f6dSGleb Smirnoff static int 283a9771948SGleb Smirnoff carp_hmac_verify(struct carp_softc *sc, u_int32_t counter[2], 284a9771948SGleb Smirnoff unsigned char md[20]) 285a9771948SGleb Smirnoff { 286a9771948SGleb Smirnoff unsigned char md2[20]; 287a9771948SGleb Smirnoff 288a9771948SGleb Smirnoff carp_hmac_generate(sc, counter, md2); 289a9771948SGleb Smirnoff 290a9771948SGleb Smirnoff return (bcmp(md, md2, sizeof(md2))); 291a9771948SGleb Smirnoff } 292a9771948SGleb Smirnoff 2935c1f0f6dSGleb Smirnoff static void 294a9771948SGleb Smirnoff carp_setroute(struct carp_softc *sc, int cmd) 295a9771948SGleb Smirnoff { 296a9771948SGleb Smirnoff struct ifaddr *ifa; 297a9771948SGleb Smirnoff int s; 298a9771948SGleb Smirnoff 299a9771948SGleb Smirnoff s = splnet(); 300a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 301e8c34a71SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET && sc->sc_carpdev != NULL) { 302a9771948SGleb Smirnoff int count = carp_addrcount( 303e8c34a71SGleb Smirnoff (struct carp_if *)sc->sc_carpdev->if_carp, 304a9771948SGleb Smirnoff ifatoia(ifa), CARP_COUNT_MASTER); 305a9771948SGleb Smirnoff 306a9771948SGleb Smirnoff if ((cmd == RTM_ADD && count == 1) || 307a9771948SGleb Smirnoff (cmd == RTM_DELETE && count == 0)) 308a9771948SGleb Smirnoff rtinit(ifa, cmd, RTF_UP | RTF_HOST); 309a9771948SGleb Smirnoff } 310a9771948SGleb Smirnoff #ifdef INET6 311a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET6) { 312a9771948SGleb Smirnoff if (cmd == RTM_ADD) 313a9771948SGleb Smirnoff in6_ifaddloop(ifa); 314a9771948SGleb Smirnoff else 315a9771948SGleb Smirnoff in6_ifremloop(ifa); 316a9771948SGleb Smirnoff } 317a9771948SGleb Smirnoff #endif /* INET6 */ 318a9771948SGleb Smirnoff } 319a9771948SGleb Smirnoff splx(s); 320a9771948SGleb Smirnoff } 321a9771948SGleb Smirnoff 3225c1f0f6dSGleb Smirnoff static int 323a9771948SGleb Smirnoff carp_clone_create(struct if_clone *ifc, int unit) 324a9771948SGleb Smirnoff { 325a9771948SGleb Smirnoff 326a9771948SGleb Smirnoff struct carp_softc *sc; 327a9771948SGleb Smirnoff struct ifnet *ifp; 328a9771948SGleb Smirnoff 329a9771948SGleb Smirnoff MALLOC(sc, struct carp_softc *, sizeof(*sc), M_CARP, M_WAITOK|M_ZERO); 330a9771948SGleb Smirnoff 331a9771948SGleb Smirnoff sc->sc_flags_backup = 0; 332a9771948SGleb Smirnoff sc->sc_suppress = 0; 333a9771948SGleb Smirnoff sc->sc_advbase = CARP_DFLTINTV; 334a9771948SGleb Smirnoff sc->sc_vhid = -1; /* required setting */ 335a9771948SGleb Smirnoff sc->sc_advskew = 0; 336a9771948SGleb Smirnoff sc->sc_init_counter = 1; 337a9771948SGleb Smirnoff sc->sc_naddrs = sc->sc_naddrs6 = 0; /* M_ZERO? */ 338a9771948SGleb Smirnoff #ifdef INET6 339a9771948SGleb Smirnoff sc->sc_im6o.im6o_multicast_hlim = CARP_DFLTTL; 340a9771948SGleb Smirnoff #endif 341a9771948SGleb Smirnoff 342a9771948SGleb Smirnoff callout_init(&sc->sc_ad_tmo, 0); 343a9771948SGleb Smirnoff callout_init(&sc->sc_md_tmo, 0); 344a9771948SGleb Smirnoff callout_init(&sc->sc_md6_tmo, 0); 345a9771948SGleb Smirnoff 346a9771948SGleb Smirnoff ifp = &sc->sc_if; 347a9771948SGleb Smirnoff ifp->if_softc = sc; 348a9771948SGleb Smirnoff if_initname(ifp, CARP_IFNAME, unit); 349a9771948SGleb Smirnoff ifp->if_mtu = ETHERMTU; 350a9771948SGleb Smirnoff ifp->if_flags = 0; 351a9771948SGleb Smirnoff ifp->if_ioctl = carp_ioctl; 352a9771948SGleb Smirnoff ifp->if_output = carp_looutput; 353a9771948SGleb Smirnoff ifp->if_start = carp_start; 354a9771948SGleb Smirnoff ifp->if_type = IFT_CARP; 355a9771948SGleb Smirnoff ifp->if_snd.ifq_maxlen = ifqmaxlen; 356a9771948SGleb Smirnoff ifp->if_hdrlen = 0; 357a9771948SGleb Smirnoff if_attach(ifp); 358a9771948SGleb Smirnoff LIST_INSERT_HEAD(&carpif_list, sc, sc_next); 3593e07def4SGleb Smirnoff bpfattach(&sc->sc_if, DLT_NULL, sizeof(u_int32_t)); 360a9771948SGleb Smirnoff return (0); 361a9771948SGleb Smirnoff } 362a9771948SGleb Smirnoff 3635c1f0f6dSGleb Smirnoff static void 364a9771948SGleb Smirnoff carp_clone_destroy(struct ifnet *ifp) 365a9771948SGleb Smirnoff { 366a9771948SGleb Smirnoff struct carp_softc *sc = ifp->if_softc; 367a9771948SGleb Smirnoff struct carp_if *cif; 368a9771948SGleb Smirnoff struct ip_moptions *imo = &sc->sc_imo; 369a9771948SGleb Smirnoff #ifdef INET6 370a9771948SGleb Smirnoff struct ip6_moptions *im6o = &sc->sc_im6o; 371a9771948SGleb Smirnoff #endif 372a9771948SGleb Smirnoff 373a9771948SGleb Smirnoff /* carpdetach(sc); */ 374a9771948SGleb Smirnoff 375a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 376a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 377a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 378a9771948SGleb Smirnoff 379a9771948SGleb Smirnoff if (imo->imo_num_memberships) { 380a9771948SGleb Smirnoff in_delmulti(imo->imo_membership[--imo->imo_num_memberships]); 381a9771948SGleb Smirnoff imo->imo_multicast_ifp = NULL; 382a9771948SGleb Smirnoff } 383a9771948SGleb Smirnoff #ifdef INET6 384a9771948SGleb Smirnoff while (!LIST_EMPTY(&im6o->im6o_memberships)) { 385a9771948SGleb Smirnoff struct in6_multi_mship *imm = 386a9771948SGleb Smirnoff LIST_FIRST(&im6o->im6o_memberships); 387a9771948SGleb Smirnoff LIST_REMOVE(imm, i6mm_chain); 388a9771948SGleb Smirnoff in6_leavegroup(imm); 389a9771948SGleb Smirnoff } 390a9771948SGleb Smirnoff im6o->im6o_multicast_ifp = NULL; 391a9771948SGleb Smirnoff #endif 392a9771948SGleb Smirnoff 393a9771948SGleb Smirnoff /* Remove ourself from parents if_carp queue */ 394e8c34a71SGleb Smirnoff if (sc->sc_carpdev && (cif = sc->sc_carpdev->if_carp)) { 395a9771948SGleb Smirnoff CARP_LOCK(cif); 396a9771948SGleb Smirnoff TAILQ_REMOVE(&cif->vhif_vrs, sc, sc_list); 397a9771948SGleb Smirnoff if (!--cif->vhif_nvrs) { 398e8c34a71SGleb Smirnoff sc->sc_carpdev->if_carp = NULL; 399a9771948SGleb Smirnoff CARP_LOCK_DESTROY(cif); 400a9771948SGleb Smirnoff FREE(cif, M_CARP); 401e8c34a71SGleb Smirnoff ifpromisc(sc->sc_carpdev, 0); 402a9771948SGleb Smirnoff } else { 403a9771948SGleb Smirnoff CARP_UNLOCK(cif); 404a9771948SGleb Smirnoff } 405a9771948SGleb Smirnoff } 406a9771948SGleb Smirnoff 407a9771948SGleb Smirnoff bpfdetach(ifp); 408a9771948SGleb Smirnoff if_detach(ifp); 409a9771948SGleb Smirnoff LIST_REMOVE(sc, sc_next); 410a9771948SGleb Smirnoff free(sc, M_CARP); 411a9771948SGleb Smirnoff } 412a9771948SGleb Smirnoff 413a9771948SGleb Smirnoff /* 414a9771948SGleb Smirnoff * process input packet. 415a9771948SGleb Smirnoff * we have rearranged checks order compared to the rfc, 416a9771948SGleb Smirnoff * but it seems more efficient this way or not possible otherwise. 417a9771948SGleb Smirnoff */ 418a9771948SGleb Smirnoff void 419a9771948SGleb Smirnoff carp_input(struct mbuf *m, int hlen) 420a9771948SGleb Smirnoff { 421a9771948SGleb Smirnoff struct ip *ip = mtod(m, struct ip *); 422a9771948SGleb Smirnoff struct carp_header *ch; 423a9771948SGleb Smirnoff int iplen, len; 424a9771948SGleb Smirnoff 425a9771948SGleb Smirnoff carpstats.carps_ipackets++; 426a9771948SGleb Smirnoff 427a9771948SGleb Smirnoff if (!carp_opts[CARPCTL_ALLOW]) { 428a9771948SGleb Smirnoff m_freem(m); 429a9771948SGleb Smirnoff return; 430a9771948SGleb Smirnoff } 431a9771948SGleb Smirnoff 432a9771948SGleb Smirnoff /* check if received on a valid carp interface */ 433a9771948SGleb Smirnoff if (m->m_pkthdr.rcvif->if_carp == NULL) { 434a9771948SGleb Smirnoff carpstats.carps_badif++; 43588bf82a6SGleb Smirnoff CARP_LOG("carp_input: packet received on non-carp " 43688bf82a6SGleb Smirnoff "interface: %s\n", 4371e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 438a9771948SGleb Smirnoff m_freem(m); 439a9771948SGleb Smirnoff return; 440a9771948SGleb Smirnoff } 441a9771948SGleb Smirnoff 442a9771948SGleb Smirnoff /* verify that the IP TTL is 255. */ 443a9771948SGleb Smirnoff if (ip->ip_ttl != CARP_DFLTTL) { 444a9771948SGleb Smirnoff carpstats.carps_badttl++; 44588bf82a6SGleb Smirnoff CARP_LOG("carp_input: received ttl %d != 255i on %s\n", 4461e9e6572SGleb Smirnoff ip->ip_ttl, 4471e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 448a9771948SGleb Smirnoff m_freem(m); 449a9771948SGleb Smirnoff return; 450a9771948SGleb Smirnoff } 451a9771948SGleb Smirnoff 452a9771948SGleb Smirnoff iplen = ip->ip_hl << 2; 453a9771948SGleb Smirnoff 454a9771948SGleb Smirnoff if (m->m_pkthdr.len < iplen + sizeof(*ch)) { 455a9771948SGleb Smirnoff carpstats.carps_badlen++; 4561e9e6572SGleb Smirnoff CARP_LOG("carp_input: received len %zd < " 45788bf82a6SGleb Smirnoff "sizeof(struct carp_header)\n", 4581e9e6572SGleb Smirnoff m->m_len - sizeof(struct ip)); 459a9771948SGleb Smirnoff m_freem(m); 460a9771948SGleb Smirnoff return; 461a9771948SGleb Smirnoff } 462a9771948SGleb Smirnoff 463a9771948SGleb Smirnoff if (iplen + sizeof(*ch) < m->m_len) { 464a9771948SGleb Smirnoff if ((m = m_pullup(m, iplen + sizeof(*ch))) == NULL) { 465a9771948SGleb Smirnoff carpstats.carps_hdrops++; 46688bf82a6SGleb Smirnoff CARP_LOG("carp_input: pullup failed\n"); 467a9771948SGleb Smirnoff return; 468a9771948SGleb Smirnoff } 469a9771948SGleb Smirnoff ip = mtod(m, struct ip *); 470a9771948SGleb Smirnoff } 471a9771948SGleb Smirnoff ch = (struct carp_header *)((char *)ip + iplen); 472a9771948SGleb Smirnoff 473a9771948SGleb Smirnoff /* 474a9771948SGleb Smirnoff * verify that the received packet length is 475a9771948SGleb Smirnoff * equal to the CARP header 476a9771948SGleb Smirnoff */ 477a9771948SGleb Smirnoff len = iplen + sizeof(*ch); 478a9771948SGleb Smirnoff if (len > m->m_pkthdr.len) { 479a9771948SGleb Smirnoff carpstats.carps_badlen++; 48088bf82a6SGleb Smirnoff CARP_LOG("carp_input: packet too short %d on %s\n", 4811e9e6572SGleb Smirnoff m->m_pkthdr.len, 4821e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 483a9771948SGleb Smirnoff m_freem(m); 484a9771948SGleb Smirnoff return; 485a9771948SGleb Smirnoff } 486a9771948SGleb Smirnoff 487a9771948SGleb Smirnoff if ((m = m_pullup(m, len)) == NULL) { 488a9771948SGleb Smirnoff carpstats.carps_hdrops++; 489a9771948SGleb Smirnoff return; 490a9771948SGleb Smirnoff } 491a9771948SGleb Smirnoff ip = mtod(m, struct ip *); 492a9771948SGleb Smirnoff ch = (struct carp_header *)((char *)ip + iplen); 493a9771948SGleb Smirnoff 494a9771948SGleb Smirnoff /* verify the CARP checksum */ 495a9771948SGleb Smirnoff m->m_data += iplen; 496a9771948SGleb Smirnoff if (carp_cksum(m, len - iplen)) { 497a9771948SGleb Smirnoff carpstats.carps_badsum++; 49888bf82a6SGleb Smirnoff CARP_LOG("carp_input: checksum failed on %s\n", 4991e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 500a9771948SGleb Smirnoff m_freem(m); 501a9771948SGleb Smirnoff return; 502a9771948SGleb Smirnoff } 503a9771948SGleb Smirnoff m->m_data -= iplen; 504a9771948SGleb Smirnoff 5051e9e6572SGleb Smirnoff carp_input_c(m, ch, AF_INET); 506a9771948SGleb Smirnoff } 507a9771948SGleb Smirnoff 508a9771948SGleb Smirnoff #ifdef INET6 509a9771948SGleb Smirnoff int 510a9771948SGleb Smirnoff carp6_input(struct mbuf **mp, int *offp, int proto) 511a9771948SGleb Smirnoff { 512a9771948SGleb Smirnoff struct mbuf *m = *mp; 513a9771948SGleb Smirnoff struct ip6_hdr *ip6 = mtod(m, struct ip6_hdr *); 514a9771948SGleb Smirnoff struct carp_header *ch; 515a9771948SGleb Smirnoff u_int len; 516a9771948SGleb Smirnoff 517a9771948SGleb Smirnoff carpstats.carps_ipackets6++; 518a9771948SGleb Smirnoff 519a9771948SGleb Smirnoff if (!carp_opts[CARPCTL_ALLOW]) { 520a9771948SGleb Smirnoff m_freem(m); 521a9771948SGleb Smirnoff return (IPPROTO_DONE); 522a9771948SGleb Smirnoff } 523a9771948SGleb Smirnoff 524a9771948SGleb Smirnoff /* check if received on a valid carp interface */ 525a9771948SGleb Smirnoff if (m->m_pkthdr.rcvif->if_carp == NULL) { 526a9771948SGleb Smirnoff carpstats.carps_badif++; 5271e9e6572SGleb Smirnoff CARP_LOG("carp6_input: packet received on non-carp " 52888bf82a6SGleb Smirnoff "interface: %s\n", 5291e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 530a9771948SGleb Smirnoff m_freem(m); 531a9771948SGleb Smirnoff return (IPPROTO_DONE); 532a9771948SGleb Smirnoff } 533a9771948SGleb Smirnoff 534a9771948SGleb Smirnoff /* verify that the IP TTL is 255 */ 535a9771948SGleb Smirnoff if (ip6->ip6_hlim != CARP_DFLTTL) { 536a9771948SGleb Smirnoff carpstats.carps_badttl++; 53788bf82a6SGleb Smirnoff CARP_LOG("carp6_input: received ttl %d != 255 on %s\n", 5381e9e6572SGleb Smirnoff ip6->ip6_hlim, 5391e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 540a9771948SGleb Smirnoff m_freem(m); 541a9771948SGleb Smirnoff return (IPPROTO_DONE); 542a9771948SGleb Smirnoff } 543a9771948SGleb Smirnoff 544a9771948SGleb Smirnoff /* verify that we have a complete carp packet */ 545a9771948SGleb Smirnoff len = m->m_len; 546a9771948SGleb Smirnoff IP6_EXTHDR_GET(ch, struct carp_header *, m, *offp, sizeof(*ch)); 547a9771948SGleb Smirnoff if (ch == NULL) { 548a9771948SGleb Smirnoff carpstats.carps_badlen++; 54988bf82a6SGleb Smirnoff CARP_LOG("carp6_input: packet size %u too small on %s\n", len, 5501e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 551a9771948SGleb Smirnoff return (IPPROTO_DONE); 552a9771948SGleb Smirnoff } 553a9771948SGleb Smirnoff 554a9771948SGleb Smirnoff 555a9771948SGleb Smirnoff /* verify the CARP checksum */ 556a9771948SGleb Smirnoff m->m_data += *offp; 557a9771948SGleb Smirnoff if (carp_cksum(m, sizeof(*ch))) { 558a9771948SGleb Smirnoff carpstats.carps_badsum++; 55988bf82a6SGleb Smirnoff CARP_LOG("carp6_input: checksum failed, on %s\n", 5601e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 561a9771948SGleb Smirnoff m_freem(m); 562a9771948SGleb Smirnoff return (IPPROTO_DONE); 563a9771948SGleb Smirnoff } 564a9771948SGleb Smirnoff m->m_data -= *offp; 565a9771948SGleb Smirnoff 5661e9e6572SGleb Smirnoff carp_input_c(m, ch, AF_INET6); 567a9771948SGleb Smirnoff return (IPPROTO_DONE); 568a9771948SGleb Smirnoff } 569a9771948SGleb Smirnoff #endif /* INET6 */ 570a9771948SGleb Smirnoff 5715c1f0f6dSGleb Smirnoff static void 5721e9e6572SGleb Smirnoff carp_input_c(struct mbuf *m, struct carp_header *ch, sa_family_t af) 573a9771948SGleb Smirnoff { 574a9771948SGleb Smirnoff struct ifnet *ifp = m->m_pkthdr.rcvif; 5751e9e6572SGleb Smirnoff struct carp_softc *sc; 576a9771948SGleb Smirnoff u_int64_t tmp_counter; 577a9771948SGleb Smirnoff struct timeval sc_tv, ch_tv; 578a9771948SGleb Smirnoff 579a9771948SGleb Smirnoff /* verify that the VHID is valid on the receiving interface */ 580a9771948SGleb Smirnoff CARP_LOCK(ifp->if_carp); 581a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &((struct carp_if *)ifp->if_carp)->vhif_vrs, sc_list) 582a9771948SGleb Smirnoff if (sc->sc_vhid == ch->carp_vhid) 583a9771948SGleb Smirnoff break; 584a9771948SGleb Smirnoff CARP_UNLOCK(ifp->if_carp); 585a9771948SGleb Smirnoff if (!sc || (sc->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) != 586a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) { 587a9771948SGleb Smirnoff carpstats.carps_badvhid++; 588a9771948SGleb Smirnoff m_freem(m); 589a9771948SGleb Smirnoff return; 590a9771948SGleb Smirnoff } 591a9771948SGleb Smirnoff 592a9771948SGleb Smirnoff getmicrotime(&sc->sc_if.if_lastchange); 593a9771948SGleb Smirnoff sc->sc_if.if_ipackets++; 594a9771948SGleb Smirnoff sc->sc_if.if_ibytes += m->m_pkthdr.len; 595a9771948SGleb Smirnoff 596a9771948SGleb Smirnoff if (sc->sc_if.if_bpf) { 597a9771948SGleb Smirnoff struct ip *ip = mtod(m, struct ip *); 5983e07def4SGleb Smirnoff uint32_t af1 = af; 599a9771948SGleb Smirnoff 600a9771948SGleb Smirnoff /* BPF wants net byte order */ 6013e07def4SGleb Smirnoff ip->ip_len = htons(ip->ip_len + (ip->ip_hl << 2)); 6023e07def4SGleb Smirnoff ip->ip_off = htons(ip->ip_off); 6033e07def4SGleb Smirnoff bpf_mtap2(sc->sc_if.if_bpf, &af1, sizeof(af1), m); 604a9771948SGleb Smirnoff } 605a9771948SGleb Smirnoff 606a9771948SGleb Smirnoff /* verify the CARP version. */ 607a9771948SGleb Smirnoff if (ch->carp_version != CARP_VERSION) { 608a9771948SGleb Smirnoff carpstats.carps_badver++; 609a9771948SGleb Smirnoff sc->sc_if.if_ierrors++; 61088bf82a6SGleb Smirnoff CARP_LOG("%s; invalid version %d\n", 6111e9e6572SGleb Smirnoff sc->sc_if.if_xname, 6121e9e6572SGleb Smirnoff ch->carp_version); 613a9771948SGleb Smirnoff m_freem(m); 614a9771948SGleb Smirnoff return; 615a9771948SGleb Smirnoff } 616a9771948SGleb Smirnoff 617a9771948SGleb Smirnoff /* verify the hash */ 618a9771948SGleb Smirnoff if (carp_hmac_verify(sc, ch->carp_counter, ch->carp_md)) { 619a9771948SGleb Smirnoff carpstats.carps_badauth++; 620a9771948SGleb Smirnoff sc->sc_if.if_ierrors++; 62188bf82a6SGleb Smirnoff CARP_LOG("%s: incorrect hash\n", sc->sc_if.if_xname); 622a9771948SGleb Smirnoff m_freem(m); 623a9771948SGleb Smirnoff return; 624a9771948SGleb Smirnoff } 625a9771948SGleb Smirnoff 626a9771948SGleb Smirnoff tmp_counter = ntohl(ch->carp_counter[0]); 627a9771948SGleb Smirnoff tmp_counter = tmp_counter<<32; 628a9771948SGleb Smirnoff tmp_counter += ntohl(ch->carp_counter[1]); 629a9771948SGleb Smirnoff 630a9771948SGleb Smirnoff /* XXX Replay protection goes here */ 631a9771948SGleb Smirnoff 632a9771948SGleb Smirnoff sc->sc_init_counter = 0; 633a9771948SGleb Smirnoff sc->sc_counter = tmp_counter; 634a9771948SGleb Smirnoff 635a9771948SGleb Smirnoff sc_tv.tv_sec = sc->sc_advbase; 636a9771948SGleb Smirnoff if (carp_suppress_preempt && sc->sc_advskew < 240) 637a9771948SGleb Smirnoff sc_tv.tv_usec = 240 * 1000000 / 256; 638a9771948SGleb Smirnoff else 639a9771948SGleb Smirnoff sc_tv.tv_usec = sc->sc_advskew * 1000000 / 256; 640a9771948SGleb Smirnoff ch_tv.tv_sec = ch->carp_advbase; 641a9771948SGleb Smirnoff ch_tv.tv_usec = ch->carp_advskew * 1000000 / 256; 642a9771948SGleb Smirnoff 643a9771948SGleb Smirnoff switch (sc->sc_state) { 644a9771948SGleb Smirnoff case INIT: 645a9771948SGleb Smirnoff break; 646a9771948SGleb Smirnoff case MASTER: 647a9771948SGleb Smirnoff /* 648a9771948SGleb Smirnoff * If we receive an advertisement from a master who's going to 649a9771948SGleb Smirnoff * be more frequent than us, go into BACKUP state. 650a9771948SGleb Smirnoff */ 651a9771948SGleb Smirnoff if (timevalcmp(&sc_tv, &ch_tv, >) || 652a9771948SGleb Smirnoff timevalcmp(&sc_tv, &ch_tv, ==)) { 653a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 6541e9e6572SGleb Smirnoff CARP_DEBUG("%s: MASTER -> BACKUP " 65588bf82a6SGleb Smirnoff "(more frequent advertisement received)\n", 6561e9e6572SGleb Smirnoff sc->sc_if.if_xname); 657a9771948SGleb Smirnoff carp_set_state(sc, BACKUP); 658a9771948SGleb Smirnoff carp_setrun(sc, 0); 659a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 660a9771948SGleb Smirnoff } 661a9771948SGleb Smirnoff break; 662a9771948SGleb Smirnoff case BACKUP: 663a9771948SGleb Smirnoff /* 664a9771948SGleb Smirnoff * If we're pre-empting masters who advertise slower than us, 665a9771948SGleb Smirnoff * and this one claims to be slower, treat him as down. 666a9771948SGleb Smirnoff */ 667a9771948SGleb Smirnoff if (carp_opts[CARPCTL_PREEMPT] && 668a9771948SGleb Smirnoff timevalcmp(&sc_tv, &ch_tv, <)) { 6691e9e6572SGleb Smirnoff CARP_DEBUG("%s: BACKUP -> MASTER " 67088bf82a6SGleb Smirnoff "(preempting a slower master)\n", 6711e9e6572SGleb Smirnoff sc->sc_if.if_xname); 672a9771948SGleb Smirnoff carp_master_down(sc); 673a9771948SGleb Smirnoff break; 674a9771948SGleb Smirnoff } 675a9771948SGleb Smirnoff 676a9771948SGleb Smirnoff /* 677a9771948SGleb Smirnoff * If the master is going to advertise at such a low frequency 678a9771948SGleb Smirnoff * that he's guaranteed to time out, we'd might as well just 679a9771948SGleb Smirnoff * treat him as timed out now. 680a9771948SGleb Smirnoff */ 681a9771948SGleb Smirnoff sc_tv.tv_sec = sc->sc_advbase * 3; 682a9771948SGleb Smirnoff if (timevalcmp(&sc_tv, &ch_tv, <)) { 6831e9e6572SGleb Smirnoff CARP_DEBUG("%s: BACKUP -> MASTER " 68488bf82a6SGleb Smirnoff "(master timed out)\n", 6851e9e6572SGleb Smirnoff sc->sc_if.if_xname); 686a9771948SGleb Smirnoff carp_master_down(sc); 687a9771948SGleb Smirnoff break; 688a9771948SGleb Smirnoff } 689a9771948SGleb Smirnoff 690a9771948SGleb Smirnoff /* 691a9771948SGleb Smirnoff * Otherwise, we reset the counter and wait for the next 692a9771948SGleb Smirnoff * advertisement. 693a9771948SGleb Smirnoff */ 694a9771948SGleb Smirnoff carp_setrun(sc, af); 695a9771948SGleb Smirnoff break; 696a9771948SGleb Smirnoff } 697a9771948SGleb Smirnoff 698a9771948SGleb Smirnoff m_freem(m); 699a9771948SGleb Smirnoff return; 700a9771948SGleb Smirnoff } 701a9771948SGleb Smirnoff 7025c1f0f6dSGleb Smirnoff static void 703a9771948SGleb Smirnoff carpdetach(struct carp_softc *sc) 704a9771948SGleb Smirnoff { 705a9771948SGleb Smirnoff struct ifaddr *ifa; 706a9771948SGleb Smirnoff 707a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 708a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 709a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 710a9771948SGleb Smirnoff 711a9771948SGleb Smirnoff while ((ifa = TAILQ_FIRST(&sc->sc_if.if_addrlist)) != NULL) 712a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET) { 713a9771948SGleb Smirnoff struct in_ifaddr *ia = ifatoia(ifa); 714a9771948SGleb Smirnoff 715a9771948SGleb Smirnoff carp_del_addr(sc, &ia->ia_addr); 716a9771948SGleb Smirnoff 717a9771948SGleb Smirnoff /* ripped screaming from in_control(SIOCDIFADDR) */ 718a9771948SGleb Smirnoff in_ifscrub(&sc->sc_if, ia); 719a9771948SGleb Smirnoff TAILQ_REMOVE(&sc->sc_if.if_addrlist, ifa, ifa_link); 720a9771948SGleb Smirnoff TAILQ_REMOVE(&in_ifaddrhead, ia, ia_link); 721a9771948SGleb Smirnoff IFAFREE((&ia->ia_ifa)); 722a9771948SGleb Smirnoff } 723a9771948SGleb Smirnoff } 724a9771948SGleb Smirnoff 725a9771948SGleb Smirnoff /* Detach an interface from the carp. */ 726a9771948SGleb Smirnoff void 727a9771948SGleb Smirnoff carp_ifdetach(struct ifnet *ifp) 728a9771948SGleb Smirnoff { 729a9771948SGleb Smirnoff struct carp_softc *sc; 730a9771948SGleb Smirnoff struct carp_if *cif = (struct carp_if *)ifp->if_carp; 731a9771948SGleb Smirnoff 732a9771948SGleb Smirnoff CARP_LOCK(cif); 733a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &cif->vhif_vrs, sc_list) 734a9771948SGleb Smirnoff carpdetach(sc); 735a9771948SGleb Smirnoff CARP_UNLOCK(cif); 736a9771948SGleb Smirnoff } 737a9771948SGleb Smirnoff 7385c1f0f6dSGleb Smirnoff static int 739a9771948SGleb Smirnoff carp_prepare_ad(struct mbuf *m, struct carp_softc *sc, struct carp_header *ch) 740a9771948SGleb Smirnoff { 741a9771948SGleb Smirnoff struct m_tag *mtag; 742a9771948SGleb Smirnoff struct ifnet *ifp = &sc->sc_if; 743a9771948SGleb Smirnoff 744a9771948SGleb Smirnoff if (sc->sc_init_counter) { 745a9771948SGleb Smirnoff /* this could also be seconds since unix epoch */ 746a9771948SGleb Smirnoff sc->sc_counter = arc4random(); 747a9771948SGleb Smirnoff sc->sc_counter = sc->sc_counter << 32; 748a9771948SGleb Smirnoff sc->sc_counter += arc4random(); 749a9771948SGleb Smirnoff } else 750a9771948SGleb Smirnoff sc->sc_counter++; 751a9771948SGleb Smirnoff 752a9771948SGleb Smirnoff ch->carp_counter[0] = htonl((sc->sc_counter>>32)&0xffffffff); 753a9771948SGleb Smirnoff ch->carp_counter[1] = htonl(sc->sc_counter&0xffffffff); 754a9771948SGleb Smirnoff 755a9771948SGleb Smirnoff carp_hmac_generate(sc, ch->carp_counter, ch->carp_md); 756a9771948SGleb Smirnoff 757a9771948SGleb Smirnoff /* Tag packet for carp_output */ 758a9771948SGleb Smirnoff mtag = m_tag_get(PACKET_TAG_CARP, sizeof(struct ifnet *), M_NOWAIT); 759a9771948SGleb Smirnoff if (mtag == NULL) { 760a9771948SGleb Smirnoff m_freem(m); 761a9771948SGleb Smirnoff sc->sc_if.if_oerrors++; 762a9771948SGleb Smirnoff return (ENOMEM); 763a9771948SGleb Smirnoff } 764a9771948SGleb Smirnoff bcopy(&ifp, (caddr_t)(mtag + 1), sizeof(struct ifnet *)); 765a9771948SGleb Smirnoff m_tag_prepend(m, mtag); 766a9771948SGleb Smirnoff 767a9771948SGleb Smirnoff return (0); 768a9771948SGleb Smirnoff } 769a9771948SGleb Smirnoff 7705c1f0f6dSGleb Smirnoff static void 771a9771948SGleb Smirnoff carp_send_ad_all(void) 772a9771948SGleb Smirnoff { 773a9771948SGleb Smirnoff struct ifnet *ifp; 774a9771948SGleb Smirnoff struct carp_if *cif; 775a9771948SGleb Smirnoff struct carp_softc *vh; 776a9771948SGleb Smirnoff 777a9771948SGleb Smirnoff TAILQ_FOREACH(ifp, &ifnet, if_list) { 778e8c34a71SGleb Smirnoff if (ifp->if_carp == NULL || ifp->if_type == IFT_CARP) 779a9771948SGleb Smirnoff continue; 780a9771948SGleb Smirnoff 781a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 782a9771948SGleb Smirnoff CARP_LOCK(cif); 783a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 784a9771948SGleb Smirnoff if ((vh->sc_ac.ac_if.if_flags & (IFF_UP|IFF_RUNNING)) && 785a9771948SGleb Smirnoff vh->sc_state == MASTER) 786a9771948SGleb Smirnoff carp_send_ad(vh); 787a9771948SGleb Smirnoff } 788a9771948SGleb Smirnoff CARP_UNLOCK(cif); 789a9771948SGleb Smirnoff } 790a9771948SGleb Smirnoff } 791a9771948SGleb Smirnoff 7925c1f0f6dSGleb Smirnoff static void 793a9771948SGleb Smirnoff carp_send_ad(void *v) 794a9771948SGleb Smirnoff { 795a9771948SGleb Smirnoff struct carp_header ch; 796a9771948SGleb Smirnoff struct timeval tv; 797a9771948SGleb Smirnoff struct carp_softc *sc = v; 798a9771948SGleb Smirnoff struct carp_header *ch_ptr; 799a9771948SGleb Smirnoff struct mbuf *m; 800a9771948SGleb Smirnoff int len, advbase, advskew; 801a9771948SGleb Smirnoff 802a9771948SGleb Smirnoff /* bow out if we've lost our UPness or RUNNINGuiness */ 803a9771948SGleb Smirnoff if ((sc->sc_if.if_flags & 804a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) != (IFF_UP|IFF_RUNNING)) { 805a9771948SGleb Smirnoff advbase = 255; 806a9771948SGleb Smirnoff advskew = 255; 807a9771948SGleb Smirnoff } else { 808a9771948SGleb Smirnoff advbase = sc->sc_advbase; 809a9771948SGleb Smirnoff if (!carp_suppress_preempt || sc->sc_advskew > 240) 810a9771948SGleb Smirnoff advskew = sc->sc_advskew; 811a9771948SGleb Smirnoff else 812a9771948SGleb Smirnoff advskew = 240; 813a9771948SGleb Smirnoff tv.tv_sec = advbase; 814a9771948SGleb Smirnoff tv.tv_usec = advskew * 1000000 / 256; 815a9771948SGleb Smirnoff } 816a9771948SGleb Smirnoff 817a9771948SGleb Smirnoff ch.carp_version = CARP_VERSION; 818a9771948SGleb Smirnoff ch.carp_type = CARP_ADVERTISEMENT; 819a9771948SGleb Smirnoff ch.carp_vhid = sc->sc_vhid; 820a9771948SGleb Smirnoff ch.carp_advbase = advbase; 821a9771948SGleb Smirnoff ch.carp_advskew = advskew; 822a9771948SGleb Smirnoff ch.carp_authlen = 7; /* XXX DEFINE */ 823a9771948SGleb Smirnoff ch.carp_pad1 = 0; /* must be zero */ 824a9771948SGleb Smirnoff ch.carp_cksum = 0; 825a9771948SGleb Smirnoff 826a9771948SGleb Smirnoff #ifdef INET 827a9771948SGleb Smirnoff if (sc->sc_ia) { 828a9771948SGleb Smirnoff struct ip *ip; 829a9771948SGleb Smirnoff 830a9771948SGleb Smirnoff MGETHDR(m, M_DONTWAIT, MT_HEADER); 831a9771948SGleb Smirnoff if (m == NULL) { 832a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_oerrors++; 833a9771948SGleb Smirnoff carpstats.carps_onomem++; 834a9771948SGleb Smirnoff /* XXX maybe less ? */ 835a9771948SGleb Smirnoff if (advbase != 255 || advskew != 255) 836a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 837a9771948SGleb Smirnoff carp_send_ad, sc); 838a9771948SGleb Smirnoff return; 839a9771948SGleb Smirnoff } 840a9771948SGleb Smirnoff len = sizeof(*ip) + sizeof(ch); 841a9771948SGleb Smirnoff m->m_pkthdr.len = len; 842a9771948SGleb Smirnoff m->m_pkthdr.rcvif = NULL; 843a9771948SGleb Smirnoff m->m_len = len; 844a9771948SGleb Smirnoff MH_ALIGN(m, m->m_len); 845a9771948SGleb Smirnoff m->m_flags |= M_MCAST; 846a9771948SGleb Smirnoff ip = mtod(m, struct ip *); 847a9771948SGleb Smirnoff ip->ip_v = IPVERSION; 848a9771948SGleb Smirnoff ip->ip_hl = sizeof(*ip) >> 2; 849a9771948SGleb Smirnoff ip->ip_tos = IPTOS_LOWDELAY; 850a9771948SGleb Smirnoff ip->ip_len = len; 851a9771948SGleb Smirnoff ip->ip_id = ip_newid(); 852a9771948SGleb Smirnoff ip->ip_off = IP_DF; 853a9771948SGleb Smirnoff ip->ip_ttl = CARP_DFLTTL; 854a9771948SGleb Smirnoff ip->ip_p = IPPROTO_CARP; 855a9771948SGleb Smirnoff ip->ip_sum = 0; 856a9771948SGleb Smirnoff ip->ip_src.s_addr = sc->sc_ia->ia_addr.sin_addr.s_addr; 857a9771948SGleb Smirnoff ip->ip_dst.s_addr = htonl(INADDR_CARP_GROUP); 858a9771948SGleb Smirnoff 859a9771948SGleb Smirnoff ch_ptr = (struct carp_header *)(&ip[1]); 860a9771948SGleb Smirnoff bcopy(&ch, ch_ptr, sizeof(ch)); 861a9771948SGleb Smirnoff if (carp_prepare_ad(m, sc, ch_ptr)) 862a9771948SGleb Smirnoff return; 863a9771948SGleb Smirnoff 864a9771948SGleb Smirnoff m->m_data += sizeof(*ip); 865a9771948SGleb Smirnoff ch_ptr->carp_cksum = carp_cksum(m, len - sizeof(*ip)); 866a9771948SGleb Smirnoff m->m_data -= sizeof(*ip); 867a9771948SGleb Smirnoff 868a9771948SGleb Smirnoff getmicrotime(&sc->sc_if.if_lastchange); 869a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_opackets++; 870a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_obytes += len; 871a9771948SGleb Smirnoff carpstats.carps_opackets++; 872a9771948SGleb Smirnoff 873a9771948SGleb Smirnoff if (ip_output(m, NULL, NULL, IP_RAWOUTPUT, &sc->sc_imo, NULL)) { 874a9771948SGleb Smirnoff sc->sc_if.if_oerrors++; 875a9771948SGleb Smirnoff if (sc->sc_sendad_errors < INT_MAX) 876a9771948SGleb Smirnoff sc->sc_sendad_errors++; 877a9771948SGleb Smirnoff if (sc->sc_sendad_errors == CARP_SENDAD_MAX_ERRORS) { 878a9771948SGleb Smirnoff carp_suppress_preempt++; 879a9771948SGleb Smirnoff if (carp_suppress_preempt == 1) 880a9771948SGleb Smirnoff carp_send_ad_all(); 881a9771948SGleb Smirnoff } 882a9771948SGleb Smirnoff sc->sc_sendad_success = 0; 883a9771948SGleb Smirnoff } else { 884a9771948SGleb Smirnoff if (sc->sc_sendad_errors >= CARP_SENDAD_MAX_ERRORS) { 885a9771948SGleb Smirnoff if (++sc->sc_sendad_success >= 886a9771948SGleb Smirnoff CARP_SENDAD_MIN_SUCCESS) { 887a9771948SGleb Smirnoff carp_suppress_preempt--; 888a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 889a9771948SGleb Smirnoff } 890a9771948SGleb Smirnoff } else 891a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 892a9771948SGleb Smirnoff } 893a9771948SGleb Smirnoff } 894a9771948SGleb Smirnoff #endif /* INET */ 895a9771948SGleb Smirnoff #ifdef INET6 896a9771948SGleb Smirnoff if (sc->sc_ia6) { 897a9771948SGleb Smirnoff struct ip6_hdr *ip6; 898a9771948SGleb Smirnoff 899a9771948SGleb Smirnoff MGETHDR(m, M_DONTWAIT, MT_HEADER); 900a9771948SGleb Smirnoff if (m == NULL) { 901a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_oerrors++; 902a9771948SGleb Smirnoff carpstats.carps_onomem++; 903a9771948SGleb Smirnoff /* XXX maybe less ? */ 904a9771948SGleb Smirnoff if (advbase != 255 || advskew != 255) 905a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 906a9771948SGleb Smirnoff carp_send_ad, sc); 907a9771948SGleb Smirnoff return; 908a9771948SGleb Smirnoff } 909a9771948SGleb Smirnoff len = sizeof(*ip6) + sizeof(ch); 910a9771948SGleb Smirnoff m->m_pkthdr.len = len; 911a9771948SGleb Smirnoff m->m_pkthdr.rcvif = NULL; 912a9771948SGleb Smirnoff m->m_len = len; 913a9771948SGleb Smirnoff MH_ALIGN(m, m->m_len); 914a9771948SGleb Smirnoff m->m_flags |= M_MCAST; 915a9771948SGleb Smirnoff ip6 = mtod(m, struct ip6_hdr *); 916a9771948SGleb Smirnoff bzero(ip6, sizeof(*ip6)); 917a9771948SGleb Smirnoff ip6->ip6_vfc |= IPV6_VERSION; 918a9771948SGleb Smirnoff ip6->ip6_hlim = CARP_DFLTTL; 919a9771948SGleb Smirnoff ip6->ip6_nxt = IPPROTO_CARP; 920a9771948SGleb Smirnoff bcopy(&sc->sc_ia6->ia_addr.sin6_addr, &ip6->ip6_src, 921a9771948SGleb Smirnoff sizeof(struct in6_addr)); 922a9771948SGleb Smirnoff /* set the multicast destination */ 923a9771948SGleb Smirnoff 924a9771948SGleb Smirnoff ip6->ip6_dst.s6_addr8[0] = 0xff; 925a9771948SGleb Smirnoff ip6->ip6_dst.s6_addr8[1] = 0x02; 926a9771948SGleb Smirnoff ip6->ip6_dst.s6_addr8[15] = 0x12; 927a9771948SGleb Smirnoff 928a9771948SGleb Smirnoff ch_ptr = (struct carp_header *)(&ip6[1]); 929a9771948SGleb Smirnoff bcopy(&ch, ch_ptr, sizeof(ch)); 930a9771948SGleb Smirnoff if (carp_prepare_ad(m, sc, ch_ptr)) 931a9771948SGleb Smirnoff return; 932a9771948SGleb Smirnoff 933a9771948SGleb Smirnoff m->m_data += sizeof(*ip6); 934a9771948SGleb Smirnoff ch_ptr->carp_cksum = carp_cksum(m, len - sizeof(*ip6)); 935a9771948SGleb Smirnoff m->m_data -= sizeof(*ip6); 936a9771948SGleb Smirnoff 937a9771948SGleb Smirnoff getmicrotime(&sc->sc_if.if_lastchange); 938a9771948SGleb Smirnoff sc->sc_if.if_opackets++; 939a9771948SGleb Smirnoff sc->sc_if.if_obytes += len; 940a9771948SGleb Smirnoff carpstats.carps_opackets6++; 941a9771948SGleb Smirnoff 942a9771948SGleb Smirnoff if (ip6_output(m, NULL, NULL, 0, &sc->sc_im6o, NULL, NULL)) { 943a9771948SGleb Smirnoff sc->sc_if.if_oerrors++; 944a9771948SGleb Smirnoff if (sc->sc_sendad_errors < INT_MAX) 945a9771948SGleb Smirnoff sc->sc_sendad_errors++; 946a9771948SGleb Smirnoff if (sc->sc_sendad_errors == CARP_SENDAD_MAX_ERRORS) { 947a9771948SGleb Smirnoff carp_suppress_preempt++; 948a9771948SGleb Smirnoff if (carp_suppress_preempt == 1) 949a9771948SGleb Smirnoff carp_send_ad_all(); 950a9771948SGleb Smirnoff } 951a9771948SGleb Smirnoff sc->sc_sendad_success = 0; 952a9771948SGleb Smirnoff } else { 953a9771948SGleb Smirnoff if (sc->sc_sendad_errors >= CARP_SENDAD_MAX_ERRORS) { 954a9771948SGleb Smirnoff if (++sc->sc_sendad_success >= 955a9771948SGleb Smirnoff CARP_SENDAD_MIN_SUCCESS) { 956a9771948SGleb Smirnoff carp_suppress_preempt--; 957a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 958a9771948SGleb Smirnoff } 959a9771948SGleb Smirnoff } else 960a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 961a9771948SGleb Smirnoff } 962a9771948SGleb Smirnoff } 963a9771948SGleb Smirnoff #endif /* INET6 */ 964a9771948SGleb Smirnoff 965a9771948SGleb Smirnoff if (advbase != 255 || advskew != 255) 966a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 967a9771948SGleb Smirnoff carp_send_ad, sc); 968a9771948SGleb Smirnoff 969a9771948SGleb Smirnoff } 970a9771948SGleb Smirnoff 971a9771948SGleb Smirnoff /* 972a9771948SGleb Smirnoff * Broadcast a gratuitous ARP request containing 973a9771948SGleb Smirnoff * the virtual router MAC address for each IP address 974a9771948SGleb Smirnoff * associated with the virtual router. 975a9771948SGleb Smirnoff */ 9765c1f0f6dSGleb Smirnoff static void 977a9771948SGleb Smirnoff carp_send_arp(struct carp_softc *sc) 978a9771948SGleb Smirnoff { 979a9771948SGleb Smirnoff struct ifaddr *ifa; 980a9771948SGleb Smirnoff 981a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 982a9771948SGleb Smirnoff 983a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family != AF_INET) 984a9771948SGleb Smirnoff continue; 985a9771948SGleb Smirnoff 986e8c34a71SGleb Smirnoff /* arprequest(sc->sc_carpdev, &in, &in, sc->sc_ac.ac_enaddr); */ 987e8c34a71SGleb Smirnoff arp_ifinit2(sc->sc_carpdev, ifa, sc->sc_ac.ac_enaddr); 988a9771948SGleb Smirnoff 989a9771948SGleb Smirnoff DELAY(1000); /* XXX */ 990a9771948SGleb Smirnoff } 991a9771948SGleb Smirnoff } 992a9771948SGleb Smirnoff 993a9771948SGleb Smirnoff #ifdef INET6 9945c1f0f6dSGleb Smirnoff static void 995a9771948SGleb Smirnoff carp_send_na(struct carp_softc *sc) 996a9771948SGleb Smirnoff { 997a9771948SGleb Smirnoff struct ifaddr *ifa; 998a9771948SGleb Smirnoff struct in6_addr *in6; 999a9771948SGleb Smirnoff static struct in6_addr mcast = IN6ADDR_LINKLOCAL_ALLNODES_INIT; 1000a9771948SGleb Smirnoff 1001a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 1002a9771948SGleb Smirnoff 1003a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family != AF_INET6) 1004a9771948SGleb Smirnoff continue; 1005a9771948SGleb Smirnoff 1006a9771948SGleb Smirnoff in6 = &ifatoia6(ifa)->ia_addr.sin6_addr; 1007e8c34a71SGleb Smirnoff nd6_na_output(sc->sc_carpdev, &mcast, in6, 1008a9771948SGleb Smirnoff ND_NA_FLAG_OVERRIDE, 1, NULL); 1009a9771948SGleb Smirnoff DELAY(1000); /* XXX */ 1010a9771948SGleb Smirnoff } 1011a9771948SGleb Smirnoff } 1012a9771948SGleb Smirnoff #endif /* INET6 */ 1013a9771948SGleb Smirnoff 10145c1f0f6dSGleb Smirnoff static int 1015a9771948SGleb Smirnoff carp_addrcount(struct carp_if *cif, struct in_ifaddr *ia, int type) 1016a9771948SGleb Smirnoff { 1017a9771948SGleb Smirnoff struct carp_softc *vh; 1018a9771948SGleb Smirnoff struct ifaddr *ifa; 1019a9771948SGleb Smirnoff int count = 0; 1020a9771948SGleb Smirnoff 1021a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1022a9771948SGleb Smirnoff if ((type == CARP_COUNT_RUNNING && 1023a9771948SGleb Smirnoff (vh->sc_ac.ac_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1024a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) || 1025a9771948SGleb Smirnoff (type == CARP_COUNT_MASTER && vh->sc_state == MASTER)) { 1026a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &vh->sc_ac.ac_if.if_addrlist, 1027a9771948SGleb Smirnoff ifa_list) { 1028a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET && 1029a9771948SGleb Smirnoff ia->ia_addr.sin_addr.s_addr == 1030a9771948SGleb Smirnoff ifatoia(ifa)->ia_addr.sin_addr.s_addr) 1031a9771948SGleb Smirnoff count++; 1032a9771948SGleb Smirnoff } 1033a9771948SGleb Smirnoff } 1034a9771948SGleb Smirnoff } 1035a9771948SGleb Smirnoff return (count); 1036a9771948SGleb Smirnoff } 1037a9771948SGleb Smirnoff 1038a9771948SGleb Smirnoff int 1039a9771948SGleb Smirnoff carp_iamatch(void *v, struct in_ifaddr *ia, 1040a9771948SGleb Smirnoff struct in_addr *isaddr, u_int8_t **enaddr) 1041a9771948SGleb Smirnoff { 1042a9771948SGleb Smirnoff struct carp_if *cif = v; 1043a9771948SGleb Smirnoff struct carp_softc *vh; 1044a9771948SGleb Smirnoff int index, count = 0; 1045a9771948SGleb Smirnoff struct ifaddr *ifa; 1046a9771948SGleb Smirnoff 1047a9771948SGleb Smirnoff CARP_LOCK(cif); 1048a9771948SGleb Smirnoff 1049a9771948SGleb Smirnoff if (carp_opts[CARPCTL_ARPBALANCE]) { 1050a9771948SGleb Smirnoff /* 1051a9771948SGleb Smirnoff * XXX proof of concept implementation. 1052a9771948SGleb Smirnoff * We use the source ip to decide which virtual host should 1053a9771948SGleb Smirnoff * handle the request. If we're master of that virtual host, 1054a9771948SGleb Smirnoff * then we respond, otherwise, just drop the arp packet on 1055a9771948SGleb Smirnoff * the floor. 1056a9771948SGleb Smirnoff */ 1057a9771948SGleb Smirnoff count = carp_addrcount(cif, ia, CARP_COUNT_RUNNING); 1058a9771948SGleb Smirnoff if (count == 0) { 1059a9771948SGleb Smirnoff /* should never reach this */ 1060a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1061a9771948SGleb Smirnoff return (0); 1062a9771948SGleb Smirnoff } 1063a9771948SGleb Smirnoff 1064a9771948SGleb Smirnoff /* this should be a hash, like pf_hash() */ 1065a9771948SGleb Smirnoff index = isaddr->s_addr % count; 1066a9771948SGleb Smirnoff count = 0; 1067a9771948SGleb Smirnoff 1068a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1069a9771948SGleb Smirnoff if ((vh->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1070a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) { 1071a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &vh->sc_if.if_addrlist, 1072a9771948SGleb Smirnoff ifa_list) { 1073a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == 1074a9771948SGleb Smirnoff AF_INET && 1075a9771948SGleb Smirnoff ia->ia_addr.sin_addr.s_addr == 1076a9771948SGleb Smirnoff ifatoia(ifa)->ia_addr.sin_addr.s_addr) { 1077a9771948SGleb Smirnoff if (count == index) { 1078a9771948SGleb Smirnoff if (vh->sc_state == 1079a9771948SGleb Smirnoff MASTER) { 1080a9771948SGleb Smirnoff *enaddr = vh->sc_ac.ac_enaddr; 1081a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1082a9771948SGleb Smirnoff return (1); 1083a9771948SGleb Smirnoff } else { 1084a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1085a9771948SGleb Smirnoff return (0); 1086a9771948SGleb Smirnoff } 1087a9771948SGleb Smirnoff } 1088a9771948SGleb Smirnoff count++; 1089a9771948SGleb Smirnoff } 1090a9771948SGleb Smirnoff } 1091a9771948SGleb Smirnoff } 1092a9771948SGleb Smirnoff } 1093a9771948SGleb Smirnoff } else { 1094a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1095a9771948SGleb Smirnoff if ((vh->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1096a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING) && ia->ia_ifp == 1097a9771948SGleb Smirnoff &vh->sc_if) { 1098a9771948SGleb Smirnoff *enaddr = vh->sc_ac.ac_enaddr; 1099a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1100a9771948SGleb Smirnoff return (1); 1101a9771948SGleb Smirnoff } 1102a9771948SGleb Smirnoff } 1103a9771948SGleb Smirnoff } 1104a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1105a9771948SGleb Smirnoff return (0); 1106a9771948SGleb Smirnoff } 1107a9771948SGleb Smirnoff 1108a9771948SGleb Smirnoff #ifdef INET6 1109a4e53905SMax Laier struct ifaddr * 1110a9771948SGleb Smirnoff carp_iamatch6(void *v, struct in6_addr *taddr) 1111a9771948SGleb Smirnoff { 1112a9771948SGleb Smirnoff struct carp_if *cif = v; 1113a9771948SGleb Smirnoff struct carp_softc *vh; 1114a9771948SGleb Smirnoff struct ifaddr *ifa; 1115a9771948SGleb Smirnoff 1116a9771948SGleb Smirnoff CARP_LOCK(cif); 1117a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1118a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &vh->sc_if.if_addrlist, ifa_list) { 1119a9771948SGleb Smirnoff if (IN6_ARE_ADDR_EQUAL(taddr, 1120a9771948SGleb Smirnoff &ifatoia6(ifa)->ia_addr.sin6_addr) && 1121a9771948SGleb Smirnoff ((vh->sc_if.if_flags & 1122a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) == (IFF_UP|IFF_RUNNING))) { 1123a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1124a9771948SGleb Smirnoff return (ifa); 1125a9771948SGleb Smirnoff } 1126a9771948SGleb Smirnoff } 1127a9771948SGleb Smirnoff } 1128a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1129a9771948SGleb Smirnoff 1130a9771948SGleb Smirnoff return (NULL); 1131a9771948SGleb Smirnoff } 1132a9771948SGleb Smirnoff 1133a4e53905SMax Laier void * 1134a9771948SGleb Smirnoff carp_macmatch6(void *v, struct mbuf *m, const struct in6_addr *taddr) 1135a9771948SGleb Smirnoff { 1136a9771948SGleb Smirnoff struct m_tag *mtag; 1137a9771948SGleb Smirnoff struct carp_if *cif = v; 1138a9771948SGleb Smirnoff struct carp_softc *sc; 1139a9771948SGleb Smirnoff struct ifaddr *ifa; 1140a9771948SGleb Smirnoff 1141a9771948SGleb Smirnoff CARP_LOCK(cif); 1142a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &cif->vhif_vrs, sc_list) { 1143a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 1144a9771948SGleb Smirnoff if (IN6_ARE_ADDR_EQUAL(taddr, 1145a9771948SGleb Smirnoff &ifatoia6(ifa)->ia_addr.sin6_addr) && 1146a9771948SGleb Smirnoff ((sc->sc_if.if_flags & 1147a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) == (IFF_UP|IFF_RUNNING))) { 1148a9771948SGleb Smirnoff struct ifnet *ifp = &sc->sc_if; 1149a9771948SGleb Smirnoff mtag = m_tag_get(PACKET_TAG_CARP, 1150a9771948SGleb Smirnoff sizeof(struct ifnet *), M_NOWAIT); 1151a9771948SGleb Smirnoff if (mtag == NULL) { 1152a9771948SGleb Smirnoff /* better a bit than nothing */ 1153a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1154a9771948SGleb Smirnoff return (sc->sc_ac.ac_enaddr); 1155a9771948SGleb Smirnoff } 1156a9771948SGleb Smirnoff bcopy(&ifp, (caddr_t)(mtag + 1), 1157a9771948SGleb Smirnoff sizeof(struct ifnet *)); 1158a9771948SGleb Smirnoff m_tag_prepend(m, mtag); 1159a9771948SGleb Smirnoff 1160a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1161a9771948SGleb Smirnoff return (sc->sc_ac.ac_enaddr); 1162a9771948SGleb Smirnoff } 1163a9771948SGleb Smirnoff } 1164a9771948SGleb Smirnoff } 1165a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1166a9771948SGleb Smirnoff 1167a9771948SGleb Smirnoff return (NULL); 1168a9771948SGleb Smirnoff } 1169a9771948SGleb Smirnoff #endif 1170a9771948SGleb Smirnoff 1171a9771948SGleb Smirnoff struct ifnet * 1172a9771948SGleb Smirnoff carp_forus(void *v, void *dhost) 1173a9771948SGleb Smirnoff { 1174a9771948SGleb Smirnoff struct carp_if *cif = v; 1175a9771948SGleb Smirnoff struct carp_softc *vh; 1176a9771948SGleb Smirnoff u_int8_t *ena = dhost; 1177a9771948SGleb Smirnoff 1178a9771948SGleb Smirnoff if (ena[0] || ena[1] || ena[2] != 0x5e || ena[3] || ena[4] != 1) 1179a9771948SGleb Smirnoff return (NULL); 1180a9771948SGleb Smirnoff 1181a9771948SGleb Smirnoff CARP_LOCK(cif); 1182a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) 1183a9771948SGleb Smirnoff if ((vh->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1184a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING) && vh->sc_state == MASTER && 1185a9771948SGleb Smirnoff !bcmp(dhost, vh->sc_ac.ac_enaddr, ETHER_ADDR_LEN)) { 1186a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1187a9771948SGleb Smirnoff return (&vh->sc_if); 1188a9771948SGleb Smirnoff } 1189a9771948SGleb Smirnoff 1190a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1191a9771948SGleb Smirnoff return (NULL); 1192a9771948SGleb Smirnoff } 1193a9771948SGleb Smirnoff 11945c1f0f6dSGleb Smirnoff static void 1195a9771948SGleb Smirnoff carp_master_down(void *v) 1196a9771948SGleb Smirnoff { 1197a9771948SGleb Smirnoff struct carp_softc *sc = v; 1198a9771948SGleb Smirnoff 1199a9771948SGleb Smirnoff switch (sc->sc_state) { 1200a9771948SGleb Smirnoff case INIT: 1201a9771948SGleb Smirnoff printf("%s: master_down event in INIT state\n", 1202a9771948SGleb Smirnoff sc->sc_if.if_xname); 1203a9771948SGleb Smirnoff break; 1204a9771948SGleb Smirnoff case MASTER: 1205a9771948SGleb Smirnoff break; 1206a9771948SGleb Smirnoff case BACKUP: 1207a9771948SGleb Smirnoff carp_set_state(sc, MASTER); 1208a9771948SGleb Smirnoff carp_send_ad(sc); 1209a9771948SGleb Smirnoff carp_send_arp(sc); 1210a9771948SGleb Smirnoff #ifdef INET6 1211a9771948SGleb Smirnoff carp_send_na(sc); 1212a9771948SGleb Smirnoff #endif /* INET6 */ 1213a9771948SGleb Smirnoff carp_setrun(sc, 0); 1214a9771948SGleb Smirnoff carp_setroute(sc, RTM_ADD); 1215a9771948SGleb Smirnoff break; 1216a9771948SGleb Smirnoff } 1217a9771948SGleb Smirnoff } 1218a9771948SGleb Smirnoff 1219a9771948SGleb Smirnoff /* 1220a9771948SGleb Smirnoff * When in backup state, af indicates whether to reset the master down timer 1221a9771948SGleb Smirnoff * for v4 or v6. If it's set to zero, reset the ones which are already pending. 1222a9771948SGleb Smirnoff */ 12235c1f0f6dSGleb Smirnoff static void 1224a9771948SGleb Smirnoff carp_setrun(struct carp_softc *sc, sa_family_t af) 1225a9771948SGleb Smirnoff { 1226a9771948SGleb Smirnoff struct timeval tv; 1227a9771948SGleb Smirnoff 1228a9771948SGleb Smirnoff if (sc->sc_if.if_flags & IFF_UP && 1229a9771948SGleb Smirnoff sc->sc_vhid > 0 && (sc->sc_naddrs || sc->sc_naddrs6)) 1230a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_RUNNING; 1231a9771948SGleb Smirnoff else { 1232a9771948SGleb Smirnoff sc->sc_if.if_flags &= ~IFF_RUNNING; 1233a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 1234a9771948SGleb Smirnoff return; 1235a9771948SGleb Smirnoff } 1236a9771948SGleb Smirnoff 1237a9771948SGleb Smirnoff switch (sc->sc_state) { 1238a9771948SGleb Smirnoff case INIT: 1239a9771948SGleb Smirnoff if (carp_opts[CARPCTL_PREEMPT] && !carp_suppress_preempt) { 1240a9771948SGleb Smirnoff carp_send_ad(sc); 1241a9771948SGleb Smirnoff carp_send_arp(sc); 1242a9771948SGleb Smirnoff #ifdef INET6 1243a9771948SGleb Smirnoff carp_send_na(sc); 1244a9771948SGleb Smirnoff #endif /* INET6 */ 124588bf82a6SGleb Smirnoff CARP_DEBUG("%s: INIT -> MASTER (preempting)\n", 12461e9e6572SGleb Smirnoff sc->sc_if.if_xname); 1247a9771948SGleb Smirnoff carp_set_state(sc, MASTER); 1248a9771948SGleb Smirnoff carp_setroute(sc, RTM_ADD); 1249a9771948SGleb Smirnoff } else { 125088bf82a6SGleb Smirnoff CARP_DEBUG("%s: INIT -> BACKUP\n", sc->sc_if.if_xname); 1251a9771948SGleb Smirnoff carp_set_state(sc, BACKUP); 1252a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 1253a9771948SGleb Smirnoff carp_setrun(sc, 0); 1254a9771948SGleb Smirnoff } 1255a9771948SGleb Smirnoff break; 1256a9771948SGleb Smirnoff case BACKUP: 1257a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1258a9771948SGleb Smirnoff tv.tv_sec = 3 * sc->sc_advbase; 1259a9771948SGleb Smirnoff tv.tv_usec = sc->sc_advskew * 1000000 / 256; 1260a9771948SGleb Smirnoff switch (af) { 1261a9771948SGleb Smirnoff #ifdef INET 1262a9771948SGleb Smirnoff case AF_INET: 1263a9771948SGleb Smirnoff callout_reset(&sc->sc_md_tmo, tvtohz(&tv), 1264a9771948SGleb Smirnoff carp_master_down, sc); 1265a9771948SGleb Smirnoff break; 1266a9771948SGleb Smirnoff #endif /* INET */ 1267a9771948SGleb Smirnoff #ifdef INET6 1268a9771948SGleb Smirnoff case AF_INET6: 1269a9771948SGleb Smirnoff callout_reset(&sc->sc_md6_tmo, tvtohz(&tv), 1270a9771948SGleb Smirnoff carp_master_down, sc); 1271a9771948SGleb Smirnoff break; 1272a9771948SGleb Smirnoff #endif /* INET6 */ 1273a9771948SGleb Smirnoff default: 1274a9771948SGleb Smirnoff if (sc->sc_naddrs) 1275a9771948SGleb Smirnoff callout_reset(&sc->sc_md_tmo, tvtohz(&tv), 1276a9771948SGleb Smirnoff carp_master_down, sc); 1277a9771948SGleb Smirnoff if (sc->sc_naddrs6) 1278a9771948SGleb Smirnoff callout_reset(&sc->sc_md6_tmo, tvtohz(&tv), 1279a9771948SGleb Smirnoff carp_master_down, sc); 1280a9771948SGleb Smirnoff break; 1281a9771948SGleb Smirnoff } 1282a9771948SGleb Smirnoff break; 1283a9771948SGleb Smirnoff case MASTER: 1284a9771948SGleb Smirnoff tv.tv_sec = sc->sc_advbase; 1285a9771948SGleb Smirnoff tv.tv_usec = sc->sc_advskew * 1000000 / 256; 1286a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 1287a9771948SGleb Smirnoff carp_send_ad, sc); 1288a9771948SGleb Smirnoff break; 1289a9771948SGleb Smirnoff } 1290a9771948SGleb Smirnoff } 1291a9771948SGleb Smirnoff 12925c1f0f6dSGleb Smirnoff static int 1293a9771948SGleb Smirnoff carp_set_addr(struct carp_softc *sc, struct sockaddr_in *sin) 1294a9771948SGleb Smirnoff { 1295a9771948SGleb Smirnoff struct ifnet *ifp; 1296a9771948SGleb Smirnoff struct carp_if *cif; 1297a9771948SGleb Smirnoff struct in_ifaddr *ia, *ia_if; 1298a9771948SGleb Smirnoff struct ip_moptions *imo = &sc->sc_imo; 1299a9771948SGleb Smirnoff struct in_addr addr; 1300a9771948SGleb Smirnoff u_long iaddr = htonl(sin->sin_addr.s_addr); 1301a9771948SGleb Smirnoff int own, error; 1302a9771948SGleb Smirnoff 1303a9771948SGleb Smirnoff if (sin->sin_addr.s_addr == 0) { 1304a9771948SGleb Smirnoff if (!(sc->sc_if.if_flags & IFF_UP)) 1305a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1306a9771948SGleb Smirnoff if (sc->sc_naddrs) 1307a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1308a9771948SGleb Smirnoff carp_setrun(sc, 0); 1309a9771948SGleb Smirnoff return (0); 1310a9771948SGleb Smirnoff } 1311a9771948SGleb Smirnoff 1312a9771948SGleb Smirnoff /* we have to do it by hands to check we won't match on us */ 1313a9771948SGleb Smirnoff ia_if = NULL; own = 0; 1314a9771948SGleb Smirnoff TAILQ_FOREACH(ia, &in_ifaddrhead, ia_link) { 1315a9771948SGleb Smirnoff /* and, yeah, we need a multicast-capable iface too */ 1316a9771948SGleb Smirnoff if (ia->ia_ifp != &sc->sc_if && 1317a9771948SGleb Smirnoff (ia->ia_ifp->if_flags & IFF_MULTICAST) && 1318a9771948SGleb Smirnoff (iaddr & ia->ia_subnetmask) == ia->ia_subnet) { 1319a9771948SGleb Smirnoff if (!ia_if) 1320a9771948SGleb Smirnoff ia_if = ia; 1321a9771948SGleb Smirnoff if (sin->sin_addr.s_addr == 1322a9771948SGleb Smirnoff ia->ia_addr.sin_addr.s_addr) 1323a9771948SGleb Smirnoff own++; 1324a9771948SGleb Smirnoff } 1325a9771948SGleb Smirnoff } 1326a9771948SGleb Smirnoff 1327a9771948SGleb Smirnoff if (!ia_if) 1328a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1329a9771948SGleb Smirnoff 1330a9771948SGleb Smirnoff ia = ia_if; 1331a9771948SGleb Smirnoff ifp = ia->ia_ifp; 1332a9771948SGleb Smirnoff 1333a9771948SGleb Smirnoff if (ifp == NULL || (ifp->if_flags & IFF_MULTICAST) == 0 || 1334a9771948SGleb Smirnoff (imo->imo_multicast_ifp && imo->imo_multicast_ifp != ifp)) 1335a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1336a9771948SGleb Smirnoff 1337a9771948SGleb Smirnoff if (imo->imo_num_memberships == 0) { 1338a9771948SGleb Smirnoff addr.s_addr = htonl(INADDR_CARP_GROUP); 1339a9771948SGleb Smirnoff if ((imo->imo_membership[0] = in_addmulti(&addr, ifp)) == NULL) 1340a9771948SGleb Smirnoff return (ENOBUFS); 1341a9771948SGleb Smirnoff imo->imo_num_memberships++; 1342a9771948SGleb Smirnoff imo->imo_multicast_ifp = ifp; 1343a9771948SGleb Smirnoff imo->imo_multicast_ttl = CARP_DFLTTL; 1344a9771948SGleb Smirnoff imo->imo_multicast_loop = 0; 1345a9771948SGleb Smirnoff } 1346a9771948SGleb Smirnoff 1347a9771948SGleb Smirnoff if (!ifp->if_carp) { 1348a9771948SGleb Smirnoff 1349a9771948SGleb Smirnoff MALLOC(cif, struct carp_if *, sizeof(*cif), M_CARP, 1350a9771948SGleb Smirnoff M_WAITOK|M_ZERO); 1351a9771948SGleb Smirnoff if (!cif) { 1352a9771948SGleb Smirnoff error = ENOBUFS; 1353a9771948SGleb Smirnoff goto cleanup; 1354a9771948SGleb Smirnoff } 1355a9771948SGleb Smirnoff if ((error = ifpromisc(ifp, 1))) { 1356a9771948SGleb Smirnoff FREE(cif, M_CARP); 1357a9771948SGleb Smirnoff goto cleanup; 1358a9771948SGleb Smirnoff } 1359a9771948SGleb Smirnoff 1360a9771948SGleb Smirnoff CARP_LOCK_INIT(cif); 1361a9771948SGleb Smirnoff CARP_LOCK(cif); 1362a9771948SGleb Smirnoff cif->vhif_ifp = ifp; 1363a9771948SGleb Smirnoff TAILQ_INIT(&cif->vhif_vrs); 1364a9771948SGleb Smirnoff ifp->if_carp = cif; 1365a9771948SGleb Smirnoff 1366a9771948SGleb Smirnoff } else { 1367a9771948SGleb Smirnoff struct carp_softc *vr; 1368a9771948SGleb Smirnoff 1369a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1370a9771948SGleb Smirnoff CARP_LOCK(cif); 1371a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) 1372a9771948SGleb Smirnoff if (vr != sc && vr->sc_vhid == sc->sc_vhid) { 1373a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1374a9771948SGleb Smirnoff error = EINVAL; 1375a9771948SGleb Smirnoff goto cleanup; 1376a9771948SGleb Smirnoff } 1377a9771948SGleb Smirnoff } 1378a9771948SGleb Smirnoff sc->sc_ia = ia; 1379e8c34a71SGleb Smirnoff sc->sc_carpdev = ifp; 1380a9771948SGleb Smirnoff 1381a9771948SGleb Smirnoff { /* XXX prevent endless loop if already in queue */ 1382a9771948SGleb Smirnoff struct carp_softc *vr, *after = NULL; 1383a9771948SGleb Smirnoff int myself = 0; 1384a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1385a9771948SGleb Smirnoff 1386a9771948SGleb Smirnoff /* XXX: cif should not change, right? So we still hold the lock */ 1387a9771948SGleb Smirnoff CARP_LOCK_ASSERT(cif); 1388a9771948SGleb Smirnoff 1389a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) { 1390a9771948SGleb Smirnoff if (vr == sc) 1391a9771948SGleb Smirnoff myself = 1; 1392a9771948SGleb Smirnoff if (vr->sc_vhid < sc->sc_vhid) 1393a9771948SGleb Smirnoff after = vr; 1394a9771948SGleb Smirnoff } 1395a9771948SGleb Smirnoff 1396a9771948SGleb Smirnoff if (!myself) { 1397a9771948SGleb Smirnoff /* We're trying to keep things in order */ 1398a9771948SGleb Smirnoff if (after == NULL) { 1399a9771948SGleb Smirnoff TAILQ_INSERT_TAIL(&cif->vhif_vrs, sc, sc_list); 1400a9771948SGleb Smirnoff } else { 1401a9771948SGleb Smirnoff TAILQ_INSERT_AFTER(&cif->vhif_vrs, after, sc, sc_list); 1402a9771948SGleb Smirnoff } 1403a9771948SGleb Smirnoff cif->vhif_nvrs++; 1404a9771948SGleb Smirnoff } 1405a9771948SGleb Smirnoff } 1406a9771948SGleb Smirnoff 1407a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1408a9771948SGleb Smirnoff 1409a9771948SGleb Smirnoff sc->sc_naddrs++; 1410a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1411a9771948SGleb Smirnoff if (own) 1412a9771948SGleb Smirnoff sc->sc_advskew = 0; 14136fba4c0bSGleb Smirnoff carp_carpdev_state(cif); 1414a9771948SGleb Smirnoff carp_setrun(sc, 0); 1415a9771948SGleb Smirnoff 1416a9771948SGleb Smirnoff return (0); 1417a9771948SGleb Smirnoff 1418a9771948SGleb Smirnoff cleanup: 1419a9771948SGleb Smirnoff in_delmulti(imo->imo_membership[--imo->imo_num_memberships]); 1420a9771948SGleb Smirnoff return (error); 1421a9771948SGleb Smirnoff } 1422a9771948SGleb Smirnoff 14235c1f0f6dSGleb Smirnoff static int 1424a9771948SGleb Smirnoff carp_del_addr(struct carp_softc *sc, struct sockaddr_in *sin) 1425a9771948SGleb Smirnoff { 1426a9771948SGleb Smirnoff int error = 0; 1427a9771948SGleb Smirnoff 1428a9771948SGleb Smirnoff if (!--sc->sc_naddrs) { 1429e8c34a71SGleb Smirnoff struct carp_if *cif = (struct carp_if *)sc->sc_carpdev->if_carp; 1430a9771948SGleb Smirnoff struct ip_moptions *imo = &sc->sc_imo; 1431a9771948SGleb Smirnoff 1432a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1433a9771948SGleb Smirnoff sc->sc_if.if_flags &= ~(IFF_UP|IFF_RUNNING); 1434a9771948SGleb Smirnoff sc->sc_vhid = -1; 1435a9771948SGleb Smirnoff in_delmulti(imo->imo_membership[--imo->imo_num_memberships]); 1436a9771948SGleb Smirnoff imo->imo_multicast_ifp = NULL; 1437a9771948SGleb Smirnoff CARP_LOCK(cif); 1438a9771948SGleb Smirnoff TAILQ_REMOVE(&cif->vhif_vrs, sc, sc_list); 1439a9771948SGleb Smirnoff if (!--cif->vhif_nvrs) { 1440e8c34a71SGleb Smirnoff sc->sc_carpdev->if_carp = NULL; 1441a9771948SGleb Smirnoff CARP_LOCK_DESTROY(cif); 1442a9771948SGleb Smirnoff FREE(cif, M_IFADDR); 1443a9771948SGleb Smirnoff } else { 1444a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1445a9771948SGleb Smirnoff } 1446a9771948SGleb Smirnoff } 1447a9771948SGleb Smirnoff 1448a9771948SGleb Smirnoff return (error); 1449a9771948SGleb Smirnoff } 1450a9771948SGleb Smirnoff 1451a9771948SGleb Smirnoff #ifdef INET6 14525c1f0f6dSGleb Smirnoff static int 1453a9771948SGleb Smirnoff carp_set_addr6(struct carp_softc *sc, struct sockaddr_in6 *sin6) 1454a9771948SGleb Smirnoff { 1455a9771948SGleb Smirnoff struct ifnet *ifp; 1456a9771948SGleb Smirnoff struct carp_if *cif; 1457a9771948SGleb Smirnoff struct in6_ifaddr *ia, *ia_if; 1458a9771948SGleb Smirnoff struct ip6_moptions *im6o = &sc->sc_im6o; 1459a9771948SGleb Smirnoff struct in6_multi_mship *imm; 1460a9771948SGleb Smirnoff struct sockaddr_in6 addr; 1461a9771948SGleb Smirnoff int own, error; 1462a9771948SGleb Smirnoff 1463a9771948SGleb Smirnoff if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 1464a9771948SGleb Smirnoff if (!(sc->sc_if.if_flags & IFF_UP)) 1465a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1466a9771948SGleb Smirnoff if (sc->sc_naddrs6) 1467a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1468a9771948SGleb Smirnoff carp_setrun(sc, 0); 1469a9771948SGleb Smirnoff return (0); 1470a9771948SGleb Smirnoff } 1471a9771948SGleb Smirnoff 1472a9771948SGleb Smirnoff /* we have to do it by hands to check we won't match on us */ 1473a9771948SGleb Smirnoff ia_if = NULL; own = 0; 1474a9771948SGleb Smirnoff for (ia = in6_ifaddr; ia; ia = ia->ia_next) { 1475a9771948SGleb Smirnoff int i; 1476a9771948SGleb Smirnoff 1477a9771948SGleb Smirnoff for (i = 0; i < 4; i++) { 1478a9771948SGleb Smirnoff if ((sin6->sin6_addr.s6_addr32[i] & 1479a9771948SGleb Smirnoff ia->ia_prefixmask.sin6_addr.s6_addr32[i]) != 1480a9771948SGleb Smirnoff (ia->ia_addr.sin6_addr.s6_addr32[i] & 1481a9771948SGleb Smirnoff ia->ia_prefixmask.sin6_addr.s6_addr32[i])) 1482a9771948SGleb Smirnoff break; 1483a9771948SGleb Smirnoff } 1484a9771948SGleb Smirnoff /* and, yeah, we need a multicast-capable iface too */ 1485a9771948SGleb Smirnoff if (ia->ia_ifp != &sc->sc_ac.ac_if && 1486a9771948SGleb Smirnoff (ia->ia_ifp->if_flags & IFF_MULTICAST) && 1487a9771948SGleb Smirnoff (i == 4)) { 1488a9771948SGleb Smirnoff if (!ia_if) 1489a9771948SGleb Smirnoff ia_if = ia; 1490a9771948SGleb Smirnoff if (IN6_ARE_ADDR_EQUAL(&sin6->sin6_addr, 1491a9771948SGleb Smirnoff &ia->ia_addr.sin6_addr)) 1492a9771948SGleb Smirnoff own++; 1493a9771948SGleb Smirnoff } 1494a9771948SGleb Smirnoff } 1495a9771948SGleb Smirnoff 1496a9771948SGleb Smirnoff if (!ia_if) 1497a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1498a9771948SGleb Smirnoff ia = ia_if; 1499a9771948SGleb Smirnoff ifp = ia->ia_ifp; 1500a9771948SGleb Smirnoff 1501a9771948SGleb Smirnoff if (ifp == NULL || (ifp->if_flags & IFF_MULTICAST) == 0 || 1502a9771948SGleb Smirnoff (im6o->im6o_multicast_ifp && im6o->im6o_multicast_ifp != ifp)) 1503a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1504a9771948SGleb Smirnoff 1505a9771948SGleb Smirnoff if (!sc->sc_naddrs6) { 1506a9771948SGleb Smirnoff im6o->im6o_multicast_ifp = ifp; 1507a9771948SGleb Smirnoff 1508a9771948SGleb Smirnoff /* join CARP multicast address */ 1509a9771948SGleb Smirnoff bzero(&addr, sizeof(addr)); 1510a9771948SGleb Smirnoff addr.sin6_family = AF_INET6; 1511a9771948SGleb Smirnoff addr.sin6_len = sizeof(addr); 1512a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[0] = htons(0xff02); 1513a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[1] = htons(ifp->if_index); 1514a9771948SGleb Smirnoff addr.sin6_addr.s6_addr8[15] = 0x12; 1515a9771948SGleb Smirnoff if ((imm = in6_joingroup(ifp, &addr.sin6_addr, &error)) == NULL) 1516a9771948SGleb Smirnoff goto cleanup; 1517a9771948SGleb Smirnoff LIST_INSERT_HEAD(&im6o->im6o_memberships, imm, i6mm_chain); 1518a9771948SGleb Smirnoff 1519a9771948SGleb Smirnoff /* join solicited multicast address */ 1520a9771948SGleb Smirnoff bzero(&addr.sin6_addr, sizeof(addr.sin6_addr)); 1521a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[0] = htons(0xff02); 1522a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[1] = htons(ifp->if_index); 1523a9771948SGleb Smirnoff addr.sin6_addr.s6_addr32[1] = 0; 1524a9771948SGleb Smirnoff addr.sin6_addr.s6_addr32[2] = htonl(1); 1525a9771948SGleb Smirnoff addr.sin6_addr.s6_addr32[3] = sin6->sin6_addr.s6_addr32[3]; 1526a9771948SGleb Smirnoff addr.sin6_addr.s6_addr8[12] = 0xff; 1527a9771948SGleb Smirnoff if ((imm = in6_joingroup(ifp, &addr.sin6_addr, &error)) == NULL) 1528a9771948SGleb Smirnoff goto cleanup; 1529a9771948SGleb Smirnoff LIST_INSERT_HEAD(&im6o->im6o_memberships, imm, i6mm_chain); 1530a9771948SGleb Smirnoff } 1531a9771948SGleb Smirnoff 1532a9771948SGleb Smirnoff if (!ifp->if_carp) { 1533a9771948SGleb Smirnoff MALLOC(cif, struct carp_if *, sizeof(*cif), M_CARP, 1534a9771948SGleb Smirnoff M_WAITOK|M_ZERO); 1535a9771948SGleb Smirnoff if (!cif) { 1536a9771948SGleb Smirnoff error = ENOBUFS; 1537a9771948SGleb Smirnoff goto cleanup; 1538a9771948SGleb Smirnoff } 1539a9771948SGleb Smirnoff if ((error = ifpromisc(ifp, 1))) { 1540a9771948SGleb Smirnoff FREE(cif, M_CARP); 1541a9771948SGleb Smirnoff goto cleanup; 1542a9771948SGleb Smirnoff } 1543a9771948SGleb Smirnoff 1544a9771948SGleb Smirnoff CARP_LOCK_INIT(cif); 1545a9771948SGleb Smirnoff CARP_LOCK(cif); 1546a9771948SGleb Smirnoff cif->vhif_ifp = ifp; 1547a9771948SGleb Smirnoff TAILQ_INIT(&cif->vhif_vrs); 1548a9771948SGleb Smirnoff ifp->if_carp = cif; 1549a9771948SGleb Smirnoff 1550a9771948SGleb Smirnoff } else { 1551a9771948SGleb Smirnoff struct carp_softc *vr; 1552a9771948SGleb Smirnoff 1553a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1554a9771948SGleb Smirnoff CARP_LOCK(cif); 1555a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) 1556a9771948SGleb Smirnoff if (vr != sc && vr->sc_vhid == sc->sc_vhid) { 1557a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1558a9771948SGleb Smirnoff error = EINVAL; 1559a9771948SGleb Smirnoff goto cleanup; 1560a9771948SGleb Smirnoff } 1561a9771948SGleb Smirnoff } 1562a9771948SGleb Smirnoff sc->sc_ia6 = ia; 1563e8c34a71SGleb Smirnoff sc->sc_carpdev = ifp; 1564a9771948SGleb Smirnoff 1565a9771948SGleb Smirnoff { /* XXX prevent endless loop if already in queue */ 1566a9771948SGleb Smirnoff struct carp_softc *vr, *after = NULL; 1567a9771948SGleb Smirnoff int myself = 0; 1568a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1569a9771948SGleb Smirnoff CARP_LOCK_ASSERT(cif); 1570a9771948SGleb Smirnoff 1571a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) { 1572a9771948SGleb Smirnoff if (vr == sc) 1573a9771948SGleb Smirnoff myself = 1; 1574a9771948SGleb Smirnoff if (vr->sc_vhid < sc->sc_vhid) 1575a9771948SGleb Smirnoff after = vr; 1576a9771948SGleb Smirnoff } 1577a9771948SGleb Smirnoff 1578a9771948SGleb Smirnoff if (!myself) { 1579a9771948SGleb Smirnoff /* We're trying to keep things in order */ 1580a9771948SGleb Smirnoff if (after == NULL) { 1581a9771948SGleb Smirnoff TAILQ_INSERT_TAIL(&cif->vhif_vrs, sc, sc_list); 1582a9771948SGleb Smirnoff } else { 1583a9771948SGleb Smirnoff TAILQ_INSERT_AFTER(&cif->vhif_vrs, after, sc, sc_list); 1584a9771948SGleb Smirnoff } 1585a9771948SGleb Smirnoff cif->vhif_nvrs++; 1586a9771948SGleb Smirnoff } 1587a9771948SGleb Smirnoff } 1588a9771948SGleb Smirnoff 1589a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1590a9771948SGleb Smirnoff sc->sc_naddrs6++; 1591a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_flags |= IFF_UP; 1592a9771948SGleb Smirnoff if (own) 1593a9771948SGleb Smirnoff sc->sc_advskew = 0; 159439aeaa0eSGleb Smirnoff carp_carpdev_state(cif); 1595a9771948SGleb Smirnoff carp_setrun(sc, 0); 1596a9771948SGleb Smirnoff 1597a9771948SGleb Smirnoff return (0); 1598a9771948SGleb Smirnoff 1599a9771948SGleb Smirnoff cleanup: 1600a9771948SGleb Smirnoff /* clean up multicast memberships */ 1601a9771948SGleb Smirnoff if (!sc->sc_naddrs6) { 1602a9771948SGleb Smirnoff while (!LIST_EMPTY(&im6o->im6o_memberships)) { 1603a9771948SGleb Smirnoff imm = LIST_FIRST(&im6o->im6o_memberships); 1604a9771948SGleb Smirnoff LIST_REMOVE(imm, i6mm_chain); 1605a9771948SGleb Smirnoff in6_leavegroup(imm); 1606a9771948SGleb Smirnoff } 1607a9771948SGleb Smirnoff } 1608a9771948SGleb Smirnoff return (error); 1609a9771948SGleb Smirnoff } 1610a9771948SGleb Smirnoff 16115c1f0f6dSGleb Smirnoff static int 1612a9771948SGleb Smirnoff carp_del_addr6(struct carp_softc *sc, struct sockaddr_in6 *sin6) 1613a9771948SGleb Smirnoff { 1614a9771948SGleb Smirnoff int error = 0; 1615a9771948SGleb Smirnoff 1616a9771948SGleb Smirnoff if (!--sc->sc_naddrs6) { 1617e8c34a71SGleb Smirnoff struct carp_if *cif = (struct carp_if *)sc->sc_carpdev->if_carp; 1618a9771948SGleb Smirnoff struct ip6_moptions *im6o = &sc->sc_im6o; 1619a9771948SGleb Smirnoff 1620a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1621a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_flags &= ~(IFF_UP|IFF_RUNNING); 1622a9771948SGleb Smirnoff sc->sc_vhid = -1; 1623a9771948SGleb Smirnoff CARP_LOCK(cif); 1624a9771948SGleb Smirnoff while (!LIST_EMPTY(&im6o->im6o_memberships)) { 1625a9771948SGleb Smirnoff struct in6_multi_mship *imm = 1626a9771948SGleb Smirnoff LIST_FIRST(&im6o->im6o_memberships); 1627a9771948SGleb Smirnoff 1628a9771948SGleb Smirnoff LIST_REMOVE(imm, i6mm_chain); 1629a9771948SGleb Smirnoff in6_leavegroup(imm); 1630a9771948SGleb Smirnoff } 1631a9771948SGleb Smirnoff im6o->im6o_multicast_ifp = NULL; 1632a9771948SGleb Smirnoff TAILQ_REMOVE(&cif->vhif_vrs, sc, sc_list); 1633a9771948SGleb Smirnoff if (!--cif->vhif_nvrs) { 1634a9771948SGleb Smirnoff CARP_LOCK_DESTROY(cif); 1635e8c34a71SGleb Smirnoff sc->sc_carpdev->if_carp = NULL; 1636a9771948SGleb Smirnoff FREE(cif, M_IFADDR); 1637a9771948SGleb Smirnoff } else 1638a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1639a9771948SGleb Smirnoff } 1640a9771948SGleb Smirnoff 1641a9771948SGleb Smirnoff return (error); 1642a9771948SGleb Smirnoff } 1643a9771948SGleb Smirnoff #endif /* INET6 */ 1644a9771948SGleb Smirnoff 16455c1f0f6dSGleb Smirnoff static int 1646a9771948SGleb Smirnoff carp_ioctl(struct ifnet *ifp, u_long cmd, caddr_t addr) 1647a9771948SGleb Smirnoff { 1648a9771948SGleb Smirnoff struct carp_softc *sc = ifp->if_softc, *vr; 1649a9771948SGleb Smirnoff struct carpreq carpr; 1650a9771948SGleb Smirnoff struct ifaddr *ifa; 1651a9771948SGleb Smirnoff struct ifreq *ifr; 1652a9771948SGleb Smirnoff struct ifaliasreq *ifra; 1653a9771948SGleb Smirnoff int error = 0; 1654a9771948SGleb Smirnoff 1655a9771948SGleb Smirnoff ifa = (struct ifaddr *)addr; 1656a9771948SGleb Smirnoff ifra = (struct ifaliasreq *)addr; 1657a9771948SGleb Smirnoff ifr = (struct ifreq *)addr; 1658a9771948SGleb Smirnoff 1659a9771948SGleb Smirnoff switch (cmd) { 1660a9771948SGleb Smirnoff case SIOCSIFADDR: 1661a9771948SGleb Smirnoff switch (ifa->ifa_addr->sa_family) { 1662a9771948SGleb Smirnoff #ifdef INET 1663a9771948SGleb Smirnoff case AF_INET: 1664a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1665a9771948SGleb Smirnoff bcopy(ifa->ifa_addr, ifa->ifa_dstaddr, 1666a9771948SGleb Smirnoff sizeof(struct sockaddr)); 1667a9771948SGleb Smirnoff error = carp_set_addr(sc, satosin(ifa->ifa_addr)); 1668a9771948SGleb Smirnoff break; 1669a9771948SGleb Smirnoff #endif /* INET */ 1670a9771948SGleb Smirnoff #ifdef INET6 1671a9771948SGleb Smirnoff case AF_INET6: 1672a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1673a9771948SGleb Smirnoff error = carp_set_addr6(sc, satosin6(ifa->ifa_addr)); 1674a9771948SGleb Smirnoff break; 1675a9771948SGleb Smirnoff #endif /* INET6 */ 1676a9771948SGleb Smirnoff default: 1677a9771948SGleb Smirnoff error = EAFNOSUPPORT; 1678a9771948SGleb Smirnoff break; 1679a9771948SGleb Smirnoff } 1680a9771948SGleb Smirnoff break; 1681a9771948SGleb Smirnoff 1682a9771948SGleb Smirnoff case SIOCAIFADDR: 1683a9771948SGleb Smirnoff switch (ifa->ifa_addr->sa_family) { 1684a9771948SGleb Smirnoff #ifdef INET 1685a9771948SGleb Smirnoff case AF_INET: 1686a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1687a9771948SGleb Smirnoff bcopy(ifa->ifa_addr, ifa->ifa_dstaddr, 1688a9771948SGleb Smirnoff sizeof(struct sockaddr)); 1689a9771948SGleb Smirnoff error = carp_set_addr(sc, satosin(&ifra->ifra_addr)); 1690a9771948SGleb Smirnoff break; 1691a9771948SGleb Smirnoff #endif /* INET */ 1692a9771948SGleb Smirnoff #ifdef INET6 1693a9771948SGleb Smirnoff case AF_INET6: 1694a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1695a9771948SGleb Smirnoff error = carp_set_addr6(sc, satosin6(&ifra->ifra_addr)); 1696a9771948SGleb Smirnoff break; 1697a9771948SGleb Smirnoff #endif /* INET6 */ 1698a9771948SGleb Smirnoff default: 1699a9771948SGleb Smirnoff error = EAFNOSUPPORT; 1700a9771948SGleb Smirnoff break; 1701a9771948SGleb Smirnoff } 1702a9771948SGleb Smirnoff break; 1703a9771948SGleb Smirnoff 1704a9771948SGleb Smirnoff case SIOCDIFADDR: 1705a9771948SGleb Smirnoff switch (ifa->ifa_addr->sa_family) { 1706a9771948SGleb Smirnoff #ifdef INET 1707a9771948SGleb Smirnoff case AF_INET: 1708a9771948SGleb Smirnoff error = carp_del_addr(sc, satosin(&ifra->ifra_addr)); 1709a9771948SGleb Smirnoff break; 1710a9771948SGleb Smirnoff #endif /* INET */ 1711a9771948SGleb Smirnoff #ifdef INET6 1712a9771948SGleb Smirnoff case AF_INET6: 1713a9771948SGleb Smirnoff error = carp_del_addr6(sc, satosin6(&ifra->ifra_addr)); 1714a9771948SGleb Smirnoff break; 1715a9771948SGleb Smirnoff #endif /* INET6 */ 1716a9771948SGleb Smirnoff default: 1717a9771948SGleb Smirnoff error = EAFNOSUPPORT; 1718a9771948SGleb Smirnoff break; 1719a9771948SGleb Smirnoff } 1720a9771948SGleb Smirnoff break; 1721a9771948SGleb Smirnoff 1722a9771948SGleb Smirnoff case SIOCSIFFLAGS: 1723a9771948SGleb Smirnoff if (sc->sc_state != INIT && !(ifr->ifr_flags & IFF_UP)) { 1724a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1725a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 1726a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 1727a9771948SGleb Smirnoff if (sc->sc_state == MASTER) 1728a9771948SGleb Smirnoff carp_send_ad(sc); 1729a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1730a9771948SGleb Smirnoff carp_setrun(sc, 0); 1731a9771948SGleb Smirnoff } else if (sc->sc_state == INIT && (ifr->ifr_flags & IFF_UP)) { 1732a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1733a9771948SGleb Smirnoff carp_setrun(sc, 0); 1734a9771948SGleb Smirnoff } 1735a9771948SGleb Smirnoff break; 1736a9771948SGleb Smirnoff 1737a9771948SGleb Smirnoff case SIOCSVH: 1738a9771948SGleb Smirnoff if ((error = suser(curthread)) != 0) 1739a9771948SGleb Smirnoff break; 1740a9771948SGleb Smirnoff if ((error = copyin(ifr->ifr_data, &carpr, sizeof carpr))) 1741a9771948SGleb Smirnoff break; 1742a9771948SGleb Smirnoff error = 1; 1743a9771948SGleb Smirnoff if (sc->sc_state != INIT && carpr.carpr_state != sc->sc_state) { 1744a9771948SGleb Smirnoff switch (carpr.carpr_state) { 1745a9771948SGleb Smirnoff case BACKUP: 1746a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1747a9771948SGleb Smirnoff carp_set_state(sc, BACKUP); 1748a9771948SGleb Smirnoff carp_setrun(sc, 0); 1749a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 1750a9771948SGleb Smirnoff break; 1751a9771948SGleb Smirnoff case MASTER: 1752a9771948SGleb Smirnoff carp_master_down(sc); 1753a9771948SGleb Smirnoff break; 1754a9771948SGleb Smirnoff default: 1755a9771948SGleb Smirnoff break; 1756a9771948SGleb Smirnoff } 1757a9771948SGleb Smirnoff } 1758a9771948SGleb Smirnoff if (carpr.carpr_vhid > 0) { 1759a9771948SGleb Smirnoff if (carpr.carpr_vhid > 255) { 1760a9771948SGleb Smirnoff error = EINVAL; 1761a9771948SGleb Smirnoff break; 1762a9771948SGleb Smirnoff } 1763e8c34a71SGleb Smirnoff if (sc->sc_carpdev) { 1764a9771948SGleb Smirnoff struct carp_if *cif; 1765e8c34a71SGleb Smirnoff cif = (struct carp_if *)sc->sc_carpdev->if_carp; 1766a9771948SGleb Smirnoff CARP_LOCK(cif); 1767a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) 1768a9771948SGleb Smirnoff if (vr != sc && 1769a9771948SGleb Smirnoff vr->sc_vhid == carpr.carpr_vhid) { 1770a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1771a9771948SGleb Smirnoff return EINVAL; 1772a9771948SGleb Smirnoff } 1773a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1774a9771948SGleb Smirnoff } 1775a9771948SGleb Smirnoff sc->sc_vhid = carpr.carpr_vhid; 1776a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[0] = 0; 1777a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[1] = 0; 1778a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[2] = 0x5e; 1779a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[3] = 0; 1780a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[4] = 1; 1781a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[5] = sc->sc_vhid; 1782a9771948SGleb Smirnoff error--; 1783a9771948SGleb Smirnoff } 1784a9771948SGleb Smirnoff if (carpr.carpr_advbase > 0 || carpr.carpr_advskew > 0) { 1785a9771948SGleb Smirnoff if (carpr.carpr_advskew >= 255) { 1786a9771948SGleb Smirnoff error = EINVAL; 1787a9771948SGleb Smirnoff break; 1788a9771948SGleb Smirnoff } 1789a9771948SGleb Smirnoff if (carpr.carpr_advbase > 255) { 1790a9771948SGleb Smirnoff error = EINVAL; 1791a9771948SGleb Smirnoff break; 1792a9771948SGleb Smirnoff } 1793a9771948SGleb Smirnoff sc->sc_advbase = carpr.carpr_advbase; 1794a9771948SGleb Smirnoff sc->sc_advskew = carpr.carpr_advskew; 1795a9771948SGleb Smirnoff error--; 1796a9771948SGleb Smirnoff } 1797a9771948SGleb Smirnoff bcopy(carpr.carpr_key, sc->sc_key, sizeof(sc->sc_key)); 1798a9771948SGleb Smirnoff if (error > 0) 1799a9771948SGleb Smirnoff error = EINVAL; 1800a9771948SGleb Smirnoff else { 1801a9771948SGleb Smirnoff error = 0; 1802a9771948SGleb Smirnoff carp_setrun(sc, 0); 1803a9771948SGleb Smirnoff } 1804a9771948SGleb Smirnoff break; 1805a9771948SGleb Smirnoff 1806a9771948SGleb Smirnoff case SIOCGVH: 1807a9771948SGleb Smirnoff bzero(&carpr, sizeof(carpr)); 1808a9771948SGleb Smirnoff carpr.carpr_state = sc->sc_state; 1809a9771948SGleb Smirnoff carpr.carpr_vhid = sc->sc_vhid; 1810a9771948SGleb Smirnoff carpr.carpr_advbase = sc->sc_advbase; 1811a9771948SGleb Smirnoff carpr.carpr_advskew = sc->sc_advskew; 1812a9771948SGleb Smirnoff if (suser(curthread) == 0) 1813a9771948SGleb Smirnoff bcopy(sc->sc_key, carpr.carpr_key, 1814a9771948SGleb Smirnoff sizeof(carpr.carpr_key)); 1815a9771948SGleb Smirnoff error = copyout(&carpr, ifr->ifr_data, sizeof(carpr)); 1816a9771948SGleb Smirnoff break; 1817a9771948SGleb Smirnoff 1818a9771948SGleb Smirnoff default: 1819a9771948SGleb Smirnoff error = EINVAL; 1820a9771948SGleb Smirnoff } 1821a9771948SGleb Smirnoff 1822a9771948SGleb Smirnoff carp_hmac_prepare(sc); 1823a9771948SGleb Smirnoff return (error); 1824a9771948SGleb Smirnoff } 1825a9771948SGleb Smirnoff 1826a9771948SGleb Smirnoff /* 1827a9771948SGleb Smirnoff * XXX: this is looutput. We should eventually use it from there. 1828a9771948SGleb Smirnoff */ 1829a9771948SGleb Smirnoff static int 1830a9771948SGleb Smirnoff carp_looutput(struct ifnet *ifp, struct mbuf *m, struct sockaddr *dst, 1831a9771948SGleb Smirnoff struct rtentry *rt) 1832a9771948SGleb Smirnoff { 1833a9771948SGleb Smirnoff M_ASSERTPKTHDR(m); /* check if we have the packet header */ 1834a9771948SGleb Smirnoff 1835a9771948SGleb Smirnoff if (rt && rt->rt_flags & (RTF_REJECT|RTF_BLACKHOLE)) { 1836a9771948SGleb Smirnoff m_freem(m); 1837a9771948SGleb Smirnoff return (rt->rt_flags & RTF_BLACKHOLE ? 0 : 1838a9771948SGleb Smirnoff rt->rt_flags & RTF_HOST ? EHOSTUNREACH : ENETUNREACH); 1839a9771948SGleb Smirnoff } 1840a9771948SGleb Smirnoff 1841a9771948SGleb Smirnoff ifp->if_opackets++; 1842a9771948SGleb Smirnoff ifp->if_obytes += m->m_pkthdr.len; 1843a9771948SGleb Smirnoff #if 1 /* XXX */ 1844a9771948SGleb Smirnoff switch (dst->sa_family) { 1845a9771948SGleb Smirnoff case AF_INET: 1846a9771948SGleb Smirnoff case AF_INET6: 1847a9771948SGleb Smirnoff case AF_IPX: 1848a9771948SGleb Smirnoff case AF_APPLETALK: 1849a9771948SGleb Smirnoff break; 1850a9771948SGleb Smirnoff default: 1851a9771948SGleb Smirnoff printf("carp_looutput: af=%d unexpected\n", dst->sa_family); 1852a9771948SGleb Smirnoff m_freem(m); 1853a9771948SGleb Smirnoff return (EAFNOSUPPORT); 1854a9771948SGleb Smirnoff } 1855a9771948SGleb Smirnoff #endif 1856a9771948SGleb Smirnoff return(if_simloop(ifp, m, dst->sa_family, 0)); 1857a9771948SGleb Smirnoff } 1858a9771948SGleb Smirnoff 1859a9771948SGleb Smirnoff /* 1860a9771948SGleb Smirnoff * Start output on carp interface. This function should never be called. 1861a9771948SGleb Smirnoff */ 18625c1f0f6dSGleb Smirnoff static void 1863a9771948SGleb Smirnoff carp_start(struct ifnet *ifp) 1864a9771948SGleb Smirnoff { 1865a9771948SGleb Smirnoff #ifdef DEBUG 1866a9771948SGleb Smirnoff printf("%s: start called\n", ifp->if_xname); 1867a9771948SGleb Smirnoff #endif 1868a9771948SGleb Smirnoff } 1869a9771948SGleb Smirnoff 1870a9771948SGleb Smirnoff int 1871a9771948SGleb Smirnoff carp_output(struct ifnet *ifp, struct mbuf *m, struct sockaddr *sa, 1872a9771948SGleb Smirnoff struct rtentry *rt) 1873a9771948SGleb Smirnoff { 1874a9771948SGleb Smirnoff struct m_tag *mtag; 1875a9771948SGleb Smirnoff struct carp_softc *sc; 1876a9771948SGleb Smirnoff struct ifnet *carp_ifp; 1877a9771948SGleb Smirnoff 1878a9771948SGleb Smirnoff if (!sa) 1879a9771948SGleb Smirnoff return (0); 1880a9771948SGleb Smirnoff 1881a9771948SGleb Smirnoff switch (sa->sa_family) { 1882a9771948SGleb Smirnoff #ifdef INET 1883a9771948SGleb Smirnoff case AF_INET: 1884a9771948SGleb Smirnoff break; 1885a9771948SGleb Smirnoff #endif /* INET */ 1886a9771948SGleb Smirnoff #ifdef INET6 1887a9771948SGleb Smirnoff case AF_INET6: 1888a9771948SGleb Smirnoff break; 1889a9771948SGleb Smirnoff #endif /* INET6 */ 1890a9771948SGleb Smirnoff default: 1891a9771948SGleb Smirnoff return (0); 1892a9771948SGleb Smirnoff } 1893a9771948SGleb Smirnoff 1894a9771948SGleb Smirnoff mtag = m_tag_find(m, PACKET_TAG_CARP, NULL); 1895a9771948SGleb Smirnoff if (mtag == NULL) 1896a9771948SGleb Smirnoff return (0); 1897a9771948SGleb Smirnoff 1898a9771948SGleb Smirnoff bcopy(mtag + 1, &carp_ifp, sizeof(struct ifnet *)); 1899a9771948SGleb Smirnoff sc = carp_ifp->if_softc; 1900a9771948SGleb Smirnoff 1901a9771948SGleb Smirnoff /* Set the source MAC address to Virtual Router MAC Address */ 1902a9771948SGleb Smirnoff switch (ifp->if_type) { 1903630481bbSYaroslav Tykhiy case IFT_ETHER: 1904630481bbSYaroslav Tykhiy case IFT_L2VLAN: { 1905a9771948SGleb Smirnoff struct ether_header *eh; 1906a9771948SGleb Smirnoff 1907a9771948SGleb Smirnoff eh = mtod(m, struct ether_header *); 1908a9771948SGleb Smirnoff eh->ether_shost[0] = 0; 1909a9771948SGleb Smirnoff eh->ether_shost[1] = 0; 1910a9771948SGleb Smirnoff eh->ether_shost[2] = 0x5e; 1911a9771948SGleb Smirnoff eh->ether_shost[3] = 0; 1912a9771948SGleb Smirnoff eh->ether_shost[4] = 1; 1913a9771948SGleb Smirnoff eh->ether_shost[5] = sc->sc_vhid; 1914a9771948SGleb Smirnoff } 1915a9771948SGleb Smirnoff break; 1916a9771948SGleb Smirnoff case IFT_FDDI: { 1917a9771948SGleb Smirnoff struct fddi_header *fh; 1918a9771948SGleb Smirnoff 1919a9771948SGleb Smirnoff fh = mtod(m, struct fddi_header *); 1920a9771948SGleb Smirnoff fh->fddi_shost[0] = 0; 1921a9771948SGleb Smirnoff fh->fddi_shost[1] = 0; 1922a9771948SGleb Smirnoff fh->fddi_shost[2] = 0x5e; 1923a9771948SGleb Smirnoff fh->fddi_shost[3] = 0; 1924a9771948SGleb Smirnoff fh->fddi_shost[4] = 1; 1925a9771948SGleb Smirnoff fh->fddi_shost[5] = sc->sc_vhid; 1926a9771948SGleb Smirnoff } 1927a9771948SGleb Smirnoff break; 1928a9771948SGleb Smirnoff case IFT_ISO88025: { 1929a9771948SGleb Smirnoff struct iso88025_header *th; 1930a9771948SGleb Smirnoff th = mtod(m, struct iso88025_header *); 1931a9771948SGleb Smirnoff th->iso88025_shost[0] = 3; 1932a9771948SGleb Smirnoff th->iso88025_shost[1] = 0; 1933a9771948SGleb Smirnoff th->iso88025_shost[2] = 0x40 >> (sc->sc_vhid - 1); 1934a9771948SGleb Smirnoff th->iso88025_shost[3] = 0x40000 >> (sc->sc_vhid - 1); 1935a9771948SGleb Smirnoff th->iso88025_shost[4] = 0; 1936a9771948SGleb Smirnoff th->iso88025_shost[5] = 0; 1937a9771948SGleb Smirnoff } 1938a9771948SGleb Smirnoff break; 1939a9771948SGleb Smirnoff default: 1940a9771948SGleb Smirnoff printf("%s: carp is not supported for this interface type\n", 1941a9771948SGleb Smirnoff ifp->if_xname); 1942a9771948SGleb Smirnoff return (EOPNOTSUPP); 1943a9771948SGleb Smirnoff } 1944a9771948SGleb Smirnoff 1945a9771948SGleb Smirnoff return (0); 1946a9771948SGleb Smirnoff } 1947a9771948SGleb Smirnoff 19485c1f0f6dSGleb Smirnoff static void 1949a9771948SGleb Smirnoff carp_set_state(struct carp_softc *sc, int state) 1950a9771948SGleb Smirnoff { 1951a9771948SGleb Smirnoff if (sc->sc_state == state) 1952a9771948SGleb Smirnoff return; 1953a9771948SGleb Smirnoff 1954a9771948SGleb Smirnoff sc->sc_state = state; 1955a9771948SGleb Smirnoff switch (state) { 1956a9771948SGleb Smirnoff case BACKUP: 1957a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_link_state = LINK_STATE_DOWN; 1958a9771948SGleb Smirnoff break; 1959a9771948SGleb Smirnoff case MASTER: 1960a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_link_state = LINK_STATE_UP; 1961a9771948SGleb Smirnoff break; 1962a9771948SGleb Smirnoff default: 1963a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_link_state = LINK_STATE_UNKNOWN; 1964a9771948SGleb Smirnoff break; 1965a9771948SGleb Smirnoff } 1966a9771948SGleb Smirnoff rt_ifmsg(&sc->sc_ac.ac_if); 1967a9771948SGleb Smirnoff } 1968a9771948SGleb Smirnoff 1969a9771948SGleb Smirnoff void 1970a9771948SGleb Smirnoff carp_carpdev_state(void *v) 1971a9771948SGleb Smirnoff { 1972a9771948SGleb Smirnoff struct carp_if *cif = v; 1973a9771948SGleb Smirnoff struct carp_softc *sc; 1974a9771948SGleb Smirnoff 1975a9771948SGleb Smirnoff CARP_LOCK(cif); 1976a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &cif->vhif_vrs, sc_list) { 1977e8c34a71SGleb Smirnoff if (sc->sc_carpdev->if_link_state != LINK_STATE_UP || 1978e8c34a71SGleb Smirnoff !(sc->sc_carpdev->if_flags & IFF_UP)) { 1979a9771948SGleb Smirnoff sc->sc_flags_backup = sc->sc_if.if_flags; 1980a9771948SGleb Smirnoff sc->sc_if.if_flags &= ~(IFF_UP|IFF_RUNNING); 1981a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1982a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 1983a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 1984a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1985a9771948SGleb Smirnoff carp_setrun(sc, 0); 1986a9771948SGleb Smirnoff if (!sc->sc_suppress) { 1987a9771948SGleb Smirnoff carp_suppress_preempt++; 1988a9771948SGleb Smirnoff if (carp_suppress_preempt == 1) 1989a9771948SGleb Smirnoff carp_send_ad_all(); 1990a9771948SGleb Smirnoff } 1991a9771948SGleb Smirnoff sc->sc_suppress = 1; 1992a9771948SGleb Smirnoff } else { 1993a9771948SGleb Smirnoff sc->sc_if.if_flags |= sc->sc_flags_backup; 1994a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1995a9771948SGleb Smirnoff carp_setrun(sc, 0); 1996a9771948SGleb Smirnoff if (sc->sc_suppress) 1997a9771948SGleb Smirnoff carp_suppress_preempt--; 1998a9771948SGleb Smirnoff sc->sc_suppress = 0; 1999a9771948SGleb Smirnoff } 2000a9771948SGleb Smirnoff } 2001a9771948SGleb Smirnoff CARP_UNLOCK(cif); 2002a9771948SGleb Smirnoff } 2003a9771948SGleb Smirnoff 2004a9771948SGleb Smirnoff static int 2005a9771948SGleb Smirnoff carp_modevent(module_t mod, int type, void *data) 2006a9771948SGleb Smirnoff { 2007a9771948SGleb Smirnoff int error = 0; 2008a9771948SGleb Smirnoff 2009a9771948SGleb Smirnoff switch (type) { 2010a9771948SGleb Smirnoff case MOD_LOAD: 2011a9771948SGleb Smirnoff LIST_INIT(&carpif_list); 2012a9771948SGleb Smirnoff if_clone_attach(&carp_cloner); 2013a9771948SGleb Smirnoff printf("carp: attached\n"); 2014a9771948SGleb Smirnoff break; 2015a9771948SGleb Smirnoff 2016a9771948SGleb Smirnoff case MOD_UNLOAD: 2017a9771948SGleb Smirnoff if_clone_detach(&carp_cloner); 2018a9771948SGleb Smirnoff while (!LIST_EMPTY(&carpif_list)) 2019a9771948SGleb Smirnoff carp_clone_destroy( 2020a9771948SGleb Smirnoff &LIST_FIRST(&carpif_list)->sc_if); 2021a9771948SGleb Smirnoff break; 2022a9771948SGleb Smirnoff 2023a9771948SGleb Smirnoff default: 2024a9771948SGleb Smirnoff error = EINVAL; 2025a9771948SGleb Smirnoff break; 2026a9771948SGleb Smirnoff } 2027a9771948SGleb Smirnoff 2028a9771948SGleb Smirnoff return error; 2029a9771948SGleb Smirnoff } 2030a9771948SGleb Smirnoff 2031a9771948SGleb Smirnoff static moduledata_t carp_mod = { 2032a9771948SGleb Smirnoff "carp", 2033a9771948SGleb Smirnoff carp_modevent, 2034a9771948SGleb Smirnoff 0 2035a9771948SGleb Smirnoff }; 2036a9771948SGleb Smirnoff 2037a9771948SGleb Smirnoff DECLARE_MODULE(carp, carp_mod, SI_SUB_PSEUDO, SI_ORDER_ANY); 2038