1a9771948SGleb Smirnoff /* $FreeBSD$ */ 2a9771948SGleb Smirnoff 3a9771948SGleb Smirnoff /* 4a9771948SGleb Smirnoff * Copyright (c) 2002 Michael Shalayeff. All rights reserved. 5a9771948SGleb Smirnoff * Copyright (c) 2003 Ryan McBride. All rights reserved. 6a9771948SGleb Smirnoff * 7a9771948SGleb Smirnoff * Redistribution and use in source and binary forms, with or without 8a9771948SGleb Smirnoff * modification, are permitted provided that the following conditions 9a9771948SGleb Smirnoff * are met: 10a9771948SGleb Smirnoff * 1. Redistributions of source code must retain the above copyright 11a9771948SGleb Smirnoff * notice, this list of conditions and the following disclaimer. 12a9771948SGleb Smirnoff * 2. Redistributions in binary form must reproduce the above copyright 13a9771948SGleb Smirnoff * notice, this list of conditions and the following disclaimer in the 14a9771948SGleb Smirnoff * documentation and/or other materials provided with the distribution. 15a9771948SGleb Smirnoff * 16a9771948SGleb Smirnoff * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR 17a9771948SGleb Smirnoff * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES 18a9771948SGleb Smirnoff * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. 19a9771948SGleb Smirnoff * IN NO EVENT SHALL THE AUTHOR OR HIS RELATIVES BE LIABLE FOR ANY DIRECT, 20a9771948SGleb Smirnoff * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES 21a9771948SGleb Smirnoff * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR 22a9771948SGleb Smirnoff * SERVICES; LOSS OF MIND, USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 23a9771948SGleb Smirnoff * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 24a9771948SGleb Smirnoff * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING 25a9771948SGleb Smirnoff * IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF 26a9771948SGleb Smirnoff * THE POSSIBILITY OF SUCH DAMAGE. 27a9771948SGleb Smirnoff */ 28a9771948SGleb Smirnoff 29a9771948SGleb Smirnoff #include "opt_carp.h" 30a9771948SGleb Smirnoff #include "opt_bpf.h" 31a9771948SGleb Smirnoff #include "opt_inet.h" 32a9771948SGleb Smirnoff #include "opt_inet6.h" 33a9771948SGleb Smirnoff 34a9771948SGleb Smirnoff #include <sys/types.h> 35a9771948SGleb Smirnoff #include <sys/param.h> 36a9771948SGleb Smirnoff #include <sys/systm.h> 37a9771948SGleb Smirnoff #include <sys/conf.h> 38a9771948SGleb Smirnoff #include <sys/kernel.h> 39a9771948SGleb Smirnoff #include <sys/limits.h> 40a9771948SGleb Smirnoff #include <sys/malloc.h> 41a9771948SGleb Smirnoff #include <sys/mbuf.h> 42a9771948SGleb Smirnoff #include <sys/module.h> 43a9771948SGleb Smirnoff #include <sys/time.h> 44a9771948SGleb Smirnoff #include <sys/proc.h> 45a9771948SGleb Smirnoff #include <sys/sysctl.h> 46a9771948SGleb Smirnoff #include <sys/syslog.h> 47a9771948SGleb Smirnoff #include <sys/signalvar.h> 48a9771948SGleb Smirnoff #include <sys/filio.h> 49a9771948SGleb Smirnoff #include <sys/sockio.h> 50a9771948SGleb Smirnoff 51a9771948SGleb Smirnoff #include <sys/socket.h> 52a9771948SGleb Smirnoff #include <sys/vnode.h> 53a9771948SGleb Smirnoff 54a9771948SGleb Smirnoff #include <machine/stdarg.h> 55a9771948SGleb Smirnoff 56a9771948SGleb Smirnoff #include <net/bpf.h> 57a9771948SGleb Smirnoff #include <net/ethernet.h> 58a9771948SGleb Smirnoff #include <net/fddi.h> 59a9771948SGleb Smirnoff #include <net/iso88025.h> 60a9771948SGleb Smirnoff #include <net/if.h> 61a9771948SGleb Smirnoff #include <net/if_clone.h> 62a9771948SGleb Smirnoff #include <net/if_types.h> 63a9771948SGleb Smirnoff #include <net/route.h> 64a9771948SGleb Smirnoff 65a9771948SGleb Smirnoff #ifdef INET 66a9771948SGleb Smirnoff #include <netinet/in.h> 67a9771948SGleb Smirnoff #include <netinet/in_var.h> 68a9771948SGleb Smirnoff #include <netinet/in_systm.h> 69a9771948SGleb Smirnoff #include <netinet/ip.h> 70a9771948SGleb Smirnoff #include <netinet/ip_var.h> 71a9771948SGleb Smirnoff #include <netinet/if_ether.h> 72a9771948SGleb Smirnoff #include <machine/in_cksum.h> 73a9771948SGleb Smirnoff #endif 74a9771948SGleb Smirnoff 75a9771948SGleb Smirnoff #ifdef INET6 76a9771948SGleb Smirnoff #include <netinet/icmp6.h> 77a9771948SGleb Smirnoff #include <netinet/ip6.h> 78a9771948SGleb Smirnoff #include <netinet6/ip6_var.h> 79a9771948SGleb Smirnoff #include <netinet6/nd6.h> 80a9771948SGleb Smirnoff #include <net/if_dl.h> 81a9771948SGleb Smirnoff #endif 82a9771948SGleb Smirnoff 83a9771948SGleb Smirnoff #include <crypto/sha1.h> 84a9771948SGleb Smirnoff #include <netinet/ip_carp.h> 85a9771948SGleb Smirnoff 86a9771948SGleb Smirnoff #define CARP_IFNAME "carp" 87a9771948SGleb Smirnoff static MALLOC_DEFINE(M_CARP, "CARP", "CARP interfaces"); 88a9771948SGleb Smirnoff SYSCTL_DECL(_net_inet_carp); 89a9771948SGleb Smirnoff 90a9771948SGleb Smirnoff struct carp_softc { 91a9771948SGleb Smirnoff struct arpcom sc_ac; /* Interface clue */ 92e8c34a71SGleb Smirnoff #define sc_if sc_ac.ac_if 933a84d72aSGleb Smirnoff struct ifnet *sc_carpdev; /* Pointer to parent interface */ 94a9771948SGleb Smirnoff struct in_ifaddr *sc_ia; /* primary iface address */ 95a9771948SGleb Smirnoff struct ip_moptions sc_imo; 96a9771948SGleb Smirnoff #ifdef INET6 97a9771948SGleb Smirnoff struct in6_ifaddr *sc_ia6; /* primary iface address v6 */ 98a9771948SGleb Smirnoff struct ip6_moptions sc_im6o; 99a9771948SGleb Smirnoff #endif /* INET6 */ 100a9771948SGleb Smirnoff TAILQ_ENTRY(carp_softc) sc_list; 101a9771948SGleb Smirnoff 102a9771948SGleb Smirnoff enum { INIT = 0, BACKUP, MASTER } sc_state; 103a9771948SGleb Smirnoff 104a9771948SGleb Smirnoff int sc_flags_backup; 105a9771948SGleb Smirnoff int sc_suppress; 106a9771948SGleb Smirnoff 107a9771948SGleb Smirnoff int sc_sendad_errors; 108a9771948SGleb Smirnoff #define CARP_SENDAD_MAX_ERRORS 3 109a9771948SGleb Smirnoff int sc_sendad_success; 110a9771948SGleb Smirnoff #define CARP_SENDAD_MIN_SUCCESS 3 111a9771948SGleb Smirnoff 112a9771948SGleb Smirnoff int sc_vhid; 113a9771948SGleb Smirnoff int sc_advskew; 114a9771948SGleb Smirnoff int sc_naddrs; 115a9771948SGleb Smirnoff int sc_naddrs6; 116a9771948SGleb Smirnoff int sc_advbase; /* seconds */ 117a9771948SGleb Smirnoff int sc_init_counter; 118a9771948SGleb Smirnoff u_int64_t sc_counter; 119a9771948SGleb Smirnoff 120a9771948SGleb Smirnoff /* authentication */ 121a9771948SGleb Smirnoff #define CARP_HMAC_PAD 64 122a9771948SGleb Smirnoff unsigned char sc_key[CARP_KEY_LEN]; 123a9771948SGleb Smirnoff unsigned char sc_pad[CARP_HMAC_PAD]; 124a9771948SGleb Smirnoff SHA1_CTX sc_sha1; 125a9771948SGleb Smirnoff 126a9771948SGleb Smirnoff struct callout sc_ad_tmo; /* advertisement timeout */ 127a9771948SGleb Smirnoff struct callout sc_md_tmo; /* master down timeout */ 128a9771948SGleb Smirnoff struct callout sc_md6_tmo; /* master down timeout */ 129a9771948SGleb Smirnoff 130a9771948SGleb Smirnoff LIST_ENTRY(carp_softc) sc_next; /* Interface clue */ 131a9771948SGleb Smirnoff }; 132a9771948SGleb Smirnoff 133a9771948SGleb Smirnoff int carp_suppress_preempt = 0; 134a9771948SGleb Smirnoff int carp_opts[CARPCTL_MAXID] = { 0, 1, 0, 1, 0, 0 }; /* XXX for now */ 135a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_ALLOW, allow, CTLFLAG_RW, 136a9771948SGleb Smirnoff &carp_opts[CARPCTL_ALLOW], 0, "Accept incoming CARP packets"); 137a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_PREEMPT, preempt, CTLFLAG_RW, 138a9771948SGleb Smirnoff &carp_opts[CARPCTL_PREEMPT], 0, "high-priority backup preemption mode"); 139a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_LOG, log, CTLFLAG_RW, 140a9771948SGleb Smirnoff &carp_opts[CARPCTL_LOG], 0, "log bad carp packets"); 141a9771948SGleb Smirnoff SYSCTL_INT(_net_inet_carp, CARPCTL_ARPBALANCE, arpbalance, CTLFLAG_RW, 142a9771948SGleb Smirnoff &carp_opts[CARPCTL_ARPBALANCE], 0, "balance arp responses"); 143a9771948SGleb Smirnoff 144a9771948SGleb Smirnoff struct carpstats carpstats; 145a9771948SGleb Smirnoff SYSCTL_STRUCT(_net_inet_carp, CARPCTL_STATS, stats, CTLFLAG_RW, 146a9771948SGleb Smirnoff &carpstats, carpstats, 147a9771948SGleb Smirnoff "CARP statistics (struct carpstats, netinet/ip_carp.h)"); 148a9771948SGleb Smirnoff 149a9771948SGleb Smirnoff struct carp_if { 150a9771948SGleb Smirnoff TAILQ_HEAD(, carp_softc) vhif_vrs; 151a9771948SGleb Smirnoff int vhif_nvrs; 152a9771948SGleb Smirnoff 153a9771948SGleb Smirnoff struct ifnet *vhif_ifp; 154a9771948SGleb Smirnoff struct mtx vhif_mtx; 155a9771948SGleb Smirnoff }; 156a9771948SGleb Smirnoff /* lock per carp_if queue */ 157a9771948SGleb Smirnoff #define CARP_LOCK_INIT(cif) mtx_init(&(cif)->vhif_mtx, "carp", \ 158a9771948SGleb Smirnoff NULL, MTX_DEF) 159a9771948SGleb Smirnoff #define CARP_LOCK_DESTROY(cif) mtx_destroy(&(cif->vhif_mtx)) 160a9771948SGleb Smirnoff #define CARP_LOCK_ASSERT(cif) mtx_assert(&(cif)->vhif_mtx, MA_OWNED) 161a9771948SGleb Smirnoff #define CARP_LOCK(cif) mtx_lock(&(cif)->vhif_mtx) 162a9771948SGleb Smirnoff #define CARP_UNLOCK(cif) mtx_unlock(&(cif)->vhif_mtx) 163a9771948SGleb Smirnoff 164947b7cf3SGleb Smirnoff #define CARP_LOG(...) do { \ 1651e9e6572SGleb Smirnoff if (carp_opts[CARPCTL_LOG] > 0) \ 1661e9e6572SGleb Smirnoff log(LOG_INFO, __VA_ARGS__); \ 167947b7cf3SGleb Smirnoff } while (0) 1681e9e6572SGleb Smirnoff 169947b7cf3SGleb Smirnoff #define CARP_DEBUG(...) do { \ 1701e9e6572SGleb Smirnoff if (carp_opts[CARPCTL_LOG] > 1) \ 1711e9e6572SGleb Smirnoff log(LOG_DEBUG, __VA_ARGS__); \ 172947b7cf3SGleb Smirnoff } while (0) 173a9771948SGleb Smirnoff 1745c1f0f6dSGleb Smirnoff static void carp_hmac_prepare(struct carp_softc *); 1755c1f0f6dSGleb Smirnoff static void carp_hmac_generate(struct carp_softc *, u_int32_t *, 176a9771948SGleb Smirnoff unsigned char *); 1775c1f0f6dSGleb Smirnoff static int carp_hmac_verify(struct carp_softc *, u_int32_t *, 178a9771948SGleb Smirnoff unsigned char *); 1795c1f0f6dSGleb Smirnoff static void carp_setroute(struct carp_softc *, int); 1805c1f0f6dSGleb Smirnoff static void carp_input_c(struct mbuf *, struct carp_header *, sa_family_t); 1815c1f0f6dSGleb Smirnoff static int carp_clone_create(struct if_clone *, int); 1825c1f0f6dSGleb Smirnoff static void carp_clone_destroy(struct ifnet *); 1835c1f0f6dSGleb Smirnoff static void carpdetach(struct carp_softc *); 1845c1f0f6dSGleb Smirnoff static int carp_prepare_ad(struct mbuf *, struct carp_softc *, 185a9771948SGleb Smirnoff struct carp_header *); 1865c1f0f6dSGleb Smirnoff static void carp_send_ad_all(void); 1875c1f0f6dSGleb Smirnoff static void carp_send_ad(void *); 1885c1f0f6dSGleb Smirnoff static void carp_send_arp(struct carp_softc *); 1895c1f0f6dSGleb Smirnoff static void carp_master_down(void *); 1905c1f0f6dSGleb Smirnoff static int carp_ioctl(struct ifnet *, u_long, caddr_t); 191a9771948SGleb Smirnoff static int carp_looutput(struct ifnet *, struct mbuf *, struct sockaddr *, 192a9771948SGleb Smirnoff struct rtentry *); 1935c1f0f6dSGleb Smirnoff static void carp_start(struct ifnet *); 1945c1f0f6dSGleb Smirnoff static void carp_setrun(struct carp_softc *, sa_family_t); 1955c1f0f6dSGleb Smirnoff static void carp_set_state(struct carp_softc *, int); 1965c1f0f6dSGleb Smirnoff static int carp_addrcount(struct carp_if *, struct in_ifaddr *, int); 197a9771948SGleb Smirnoff enum { CARP_COUNT_MASTER, CARP_COUNT_RUNNING }; 198a9771948SGleb Smirnoff 1995c1f0f6dSGleb Smirnoff static int carp_set_addr(struct carp_softc *, struct sockaddr_in *); 2005c1f0f6dSGleb Smirnoff static int carp_del_addr(struct carp_softc *, struct sockaddr_in *); 201a9771948SGleb Smirnoff #ifdef INET6 2025c1f0f6dSGleb Smirnoff static void carp_send_na(struct carp_softc *); 2035c1f0f6dSGleb Smirnoff static int carp_set_addr6(struct carp_softc *, struct sockaddr_in6 *); 2045c1f0f6dSGleb Smirnoff static int carp_del_addr6(struct carp_softc *, struct sockaddr_in6 *); 205a9771948SGleb Smirnoff #endif 206a9771948SGleb Smirnoff 207a9771948SGleb Smirnoff static LIST_HEAD(, carp_softc) carpif_list; 208d92d54d5SGleb Smirnoff static struct mtx carp_mtx; 209a9771948SGleb Smirnoff IFC_SIMPLE_DECLARE(carp, 0); 210a9771948SGleb Smirnoff 211a9771948SGleb Smirnoff static __inline u_int16_t 212a9771948SGleb Smirnoff carp_cksum(struct mbuf *m, int len) 213a9771948SGleb Smirnoff { 214a9771948SGleb Smirnoff return (in_cksum(m, len)); 215a9771948SGleb Smirnoff } 216a9771948SGleb Smirnoff 2175c1f0f6dSGleb Smirnoff static void 218a9771948SGleb Smirnoff carp_hmac_prepare(struct carp_softc *sc) 219a9771948SGleb Smirnoff { 220a9771948SGleb Smirnoff u_int8_t version = CARP_VERSION, type = CARP_ADVERTISEMENT; 221a9771948SGleb Smirnoff u_int8_t vhid = sc->sc_vhid & 0xff; 222a9771948SGleb Smirnoff struct ifaddr *ifa; 223a9771948SGleb Smirnoff int i; 224a9771948SGleb Smirnoff #ifdef INET6 225a9771948SGleb Smirnoff struct in6_addr in6; 226a9771948SGleb Smirnoff #endif 227a9771948SGleb Smirnoff 228a9771948SGleb Smirnoff /* compute ipad from key */ 229a9771948SGleb Smirnoff bzero(sc->sc_pad, sizeof(sc->sc_pad)); 230a9771948SGleb Smirnoff bcopy(sc->sc_key, sc->sc_pad, sizeof(sc->sc_key)); 231a9771948SGleb Smirnoff for (i = 0; i < sizeof(sc->sc_pad); i++) 232a9771948SGleb Smirnoff sc->sc_pad[i] ^= 0x36; 233a9771948SGleb Smirnoff 234a9771948SGleb Smirnoff /* precompute first part of inner hash */ 235a9771948SGleb Smirnoff SHA1Init(&sc->sc_sha1); 236a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, sc->sc_pad, sizeof(sc->sc_pad)); 237a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&version, sizeof(version)); 238a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&type, sizeof(type)); 239a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&vhid, sizeof(vhid)); 240a9771948SGleb Smirnoff #ifdef INET 241a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 242a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET) 243a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, 244a9771948SGleb Smirnoff (void *)&ifatoia(ifa)->ia_addr.sin_addr.s_addr, 245a9771948SGleb Smirnoff sizeof(struct in_addr)); 246a9771948SGleb Smirnoff } 247a9771948SGleb Smirnoff #endif /* INET */ 248a9771948SGleb Smirnoff #ifdef INET6 249a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 250a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET6) { 251a9771948SGleb Smirnoff in6 = ifatoia6(ifa)->ia_addr.sin6_addr; 252a9771948SGleb Smirnoff if (IN6_IS_ADDR_LINKLOCAL(&in6)) 253a9771948SGleb Smirnoff in6.s6_addr16[1] = 0; 254a9771948SGleb Smirnoff SHA1Update(&sc->sc_sha1, (void *)&in6, sizeof(in6)); 255a9771948SGleb Smirnoff } 256a9771948SGleb Smirnoff } 257a9771948SGleb Smirnoff #endif /* INET6 */ 258a9771948SGleb Smirnoff 259a9771948SGleb Smirnoff /* convert ipad to opad */ 260a9771948SGleb Smirnoff for (i = 0; i < sizeof(sc->sc_pad); i++) 261a9771948SGleb Smirnoff sc->sc_pad[i] ^= 0x36 ^ 0x5c; 262a9771948SGleb Smirnoff } 263a9771948SGleb Smirnoff 2645c1f0f6dSGleb Smirnoff static void 265a9771948SGleb Smirnoff carp_hmac_generate(struct carp_softc *sc, u_int32_t counter[2], 266a9771948SGleb Smirnoff unsigned char md[20]) 267a9771948SGleb Smirnoff { 268a9771948SGleb Smirnoff SHA1_CTX sha1ctx; 269a9771948SGleb Smirnoff 270a9771948SGleb Smirnoff /* fetch first half of inner hash */ 271a9771948SGleb Smirnoff bcopy(&sc->sc_sha1, &sha1ctx, sizeof(sha1ctx)); 272a9771948SGleb Smirnoff 273a9771948SGleb Smirnoff SHA1Update(&sha1ctx, (void *)counter, sizeof(sc->sc_counter)); 274a9771948SGleb Smirnoff SHA1Final(md, &sha1ctx); 275a9771948SGleb Smirnoff 276a9771948SGleb Smirnoff /* outer hash */ 277a9771948SGleb Smirnoff SHA1Init(&sha1ctx); 278a9771948SGleb Smirnoff SHA1Update(&sha1ctx, sc->sc_pad, sizeof(sc->sc_pad)); 279a9771948SGleb Smirnoff SHA1Update(&sha1ctx, md, 20); 280a9771948SGleb Smirnoff SHA1Final(md, &sha1ctx); 281a9771948SGleb Smirnoff } 282a9771948SGleb Smirnoff 2835c1f0f6dSGleb Smirnoff static int 284a9771948SGleb Smirnoff carp_hmac_verify(struct carp_softc *sc, u_int32_t counter[2], 285a9771948SGleb Smirnoff unsigned char md[20]) 286a9771948SGleb Smirnoff { 287a9771948SGleb Smirnoff unsigned char md2[20]; 288a9771948SGleb Smirnoff 289a9771948SGleb Smirnoff carp_hmac_generate(sc, counter, md2); 290a9771948SGleb Smirnoff 291a9771948SGleb Smirnoff return (bcmp(md, md2, sizeof(md2))); 292a9771948SGleb Smirnoff } 293a9771948SGleb Smirnoff 2945c1f0f6dSGleb Smirnoff static void 295a9771948SGleb Smirnoff carp_setroute(struct carp_softc *sc, int cmd) 296a9771948SGleb Smirnoff { 297a9771948SGleb Smirnoff struct ifaddr *ifa; 298a9771948SGleb Smirnoff int s; 299a9771948SGleb Smirnoff 300a9771948SGleb Smirnoff s = splnet(); 301a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 302e8c34a71SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET && sc->sc_carpdev != NULL) { 303a9771948SGleb Smirnoff int count = carp_addrcount( 304e8c34a71SGleb Smirnoff (struct carp_if *)sc->sc_carpdev->if_carp, 305a9771948SGleb Smirnoff ifatoia(ifa), CARP_COUNT_MASTER); 306a9771948SGleb Smirnoff 307a9771948SGleb Smirnoff if ((cmd == RTM_ADD && count == 1) || 308a9771948SGleb Smirnoff (cmd == RTM_DELETE && count == 0)) 309a9771948SGleb Smirnoff rtinit(ifa, cmd, RTF_UP | RTF_HOST); 310a9771948SGleb Smirnoff } 311a9771948SGleb Smirnoff #ifdef INET6 312a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET6) { 313a9771948SGleb Smirnoff if (cmd == RTM_ADD) 314a9771948SGleb Smirnoff in6_ifaddloop(ifa); 315a9771948SGleb Smirnoff else 316a9771948SGleb Smirnoff in6_ifremloop(ifa); 317a9771948SGleb Smirnoff } 318a9771948SGleb Smirnoff #endif /* INET6 */ 319a9771948SGleb Smirnoff } 320a9771948SGleb Smirnoff splx(s); 321a9771948SGleb Smirnoff } 322a9771948SGleb Smirnoff 3235c1f0f6dSGleb Smirnoff static int 324a9771948SGleb Smirnoff carp_clone_create(struct if_clone *ifc, int unit) 325a9771948SGleb Smirnoff { 326a9771948SGleb Smirnoff 327a9771948SGleb Smirnoff struct carp_softc *sc; 328a9771948SGleb Smirnoff struct ifnet *ifp; 329a9771948SGleb Smirnoff 330a9771948SGleb Smirnoff MALLOC(sc, struct carp_softc *, sizeof(*sc), M_CARP, M_WAITOK|M_ZERO); 331a9771948SGleb Smirnoff 332a9771948SGleb Smirnoff sc->sc_flags_backup = 0; 333a9771948SGleb Smirnoff sc->sc_suppress = 0; 334a9771948SGleb Smirnoff sc->sc_advbase = CARP_DFLTINTV; 335a9771948SGleb Smirnoff sc->sc_vhid = -1; /* required setting */ 336a9771948SGleb Smirnoff sc->sc_advskew = 0; 337a9771948SGleb Smirnoff sc->sc_init_counter = 1; 338a9771948SGleb Smirnoff sc->sc_naddrs = sc->sc_naddrs6 = 0; /* M_ZERO? */ 339a9771948SGleb Smirnoff #ifdef INET6 340a9771948SGleb Smirnoff sc->sc_im6o.im6o_multicast_hlim = CARP_DFLTTL; 341a9771948SGleb Smirnoff #endif 342a9771948SGleb Smirnoff 343a9771948SGleb Smirnoff callout_init(&sc->sc_ad_tmo, 0); 344a9771948SGleb Smirnoff callout_init(&sc->sc_md_tmo, 0); 345a9771948SGleb Smirnoff callout_init(&sc->sc_md6_tmo, 0); 346a9771948SGleb Smirnoff 347a9771948SGleb Smirnoff ifp = &sc->sc_if; 348a9771948SGleb Smirnoff ifp->if_softc = sc; 349a9771948SGleb Smirnoff if_initname(ifp, CARP_IFNAME, unit); 350a9771948SGleb Smirnoff ifp->if_mtu = ETHERMTU; 351a9771948SGleb Smirnoff ifp->if_flags = 0; 352a9771948SGleb Smirnoff ifp->if_ioctl = carp_ioctl; 353a9771948SGleb Smirnoff ifp->if_output = carp_looutput; 354a9771948SGleb Smirnoff ifp->if_start = carp_start; 355a9771948SGleb Smirnoff ifp->if_type = IFT_CARP; 356a9771948SGleb Smirnoff ifp->if_snd.ifq_maxlen = ifqmaxlen; 357a9771948SGleb Smirnoff ifp->if_hdrlen = 0; 358a9771948SGleb Smirnoff if_attach(ifp); 3593e07def4SGleb Smirnoff bpfattach(&sc->sc_if, DLT_NULL, sizeof(u_int32_t)); 360d92d54d5SGleb Smirnoff mtx_lock(&carp_mtx); 361d92d54d5SGleb Smirnoff LIST_INSERT_HEAD(&carpif_list, sc, sc_next); 362d92d54d5SGleb Smirnoff mtx_unlock(&carp_mtx); 363a9771948SGleb Smirnoff return (0); 364a9771948SGleb Smirnoff } 365a9771948SGleb Smirnoff 3665c1f0f6dSGleb Smirnoff static void 367a9771948SGleb Smirnoff carp_clone_destroy(struct ifnet *ifp) 368a9771948SGleb Smirnoff { 369a9771948SGleb Smirnoff struct carp_softc *sc = ifp->if_softc; 370a9771948SGleb Smirnoff struct carp_if *cif; 371a9771948SGleb Smirnoff struct ip_moptions *imo = &sc->sc_imo; 372a9771948SGleb Smirnoff #ifdef INET6 373a9771948SGleb Smirnoff struct ip6_moptions *im6o = &sc->sc_im6o; 374a9771948SGleb Smirnoff #endif 375a9771948SGleb Smirnoff 376a9771948SGleb Smirnoff /* carpdetach(sc); */ 377a9771948SGleb Smirnoff 378a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 379a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 380a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 381a9771948SGleb Smirnoff 382a9771948SGleb Smirnoff if (imo->imo_num_memberships) { 383a9771948SGleb Smirnoff in_delmulti(imo->imo_membership[--imo->imo_num_memberships]); 384a9771948SGleb Smirnoff imo->imo_multicast_ifp = NULL; 385a9771948SGleb Smirnoff } 386a9771948SGleb Smirnoff #ifdef INET6 387a9771948SGleb Smirnoff while (!LIST_EMPTY(&im6o->im6o_memberships)) { 388a9771948SGleb Smirnoff struct in6_multi_mship *imm = 389a9771948SGleb Smirnoff LIST_FIRST(&im6o->im6o_memberships); 390a9771948SGleb Smirnoff LIST_REMOVE(imm, i6mm_chain); 391a9771948SGleb Smirnoff in6_leavegroup(imm); 392a9771948SGleb Smirnoff } 393a9771948SGleb Smirnoff im6o->im6o_multicast_ifp = NULL; 394a9771948SGleb Smirnoff #endif 395a9771948SGleb Smirnoff 396a9771948SGleb Smirnoff /* Remove ourself from parents if_carp queue */ 397e8c34a71SGleb Smirnoff if (sc->sc_carpdev && (cif = sc->sc_carpdev->if_carp)) { 398a9771948SGleb Smirnoff CARP_LOCK(cif); 399a9771948SGleb Smirnoff TAILQ_REMOVE(&cif->vhif_vrs, sc, sc_list); 400a9771948SGleb Smirnoff if (!--cif->vhif_nvrs) { 401e8c34a71SGleb Smirnoff sc->sc_carpdev->if_carp = NULL; 402a9771948SGleb Smirnoff CARP_LOCK_DESTROY(cif); 403a9771948SGleb Smirnoff FREE(cif, M_CARP); 404e8c34a71SGleb Smirnoff ifpromisc(sc->sc_carpdev, 0); 405a9771948SGleb Smirnoff } else { 406a9771948SGleb Smirnoff CARP_UNLOCK(cif); 407a9771948SGleb Smirnoff } 408a9771948SGleb Smirnoff } 409a9771948SGleb Smirnoff 410d92d54d5SGleb Smirnoff mtx_lock(&carp_mtx); 411d92d54d5SGleb Smirnoff LIST_REMOVE(sc, sc_next); 412d92d54d5SGleb Smirnoff mtx_unlock(&carp_mtx); 413a9771948SGleb Smirnoff bpfdetach(ifp); 414a9771948SGleb Smirnoff if_detach(ifp); 415a9771948SGleb Smirnoff free(sc, M_CARP); 416a9771948SGleb Smirnoff } 417a9771948SGleb Smirnoff 418a9771948SGleb Smirnoff /* 419a9771948SGleb Smirnoff * process input packet. 420a9771948SGleb Smirnoff * we have rearranged checks order compared to the rfc, 421a9771948SGleb Smirnoff * but it seems more efficient this way or not possible otherwise. 422a9771948SGleb Smirnoff */ 423a9771948SGleb Smirnoff void 424a9771948SGleb Smirnoff carp_input(struct mbuf *m, int hlen) 425a9771948SGleb Smirnoff { 426a9771948SGleb Smirnoff struct ip *ip = mtod(m, struct ip *); 427a9771948SGleb Smirnoff struct carp_header *ch; 428a9771948SGleb Smirnoff int iplen, len; 429a9771948SGleb Smirnoff 430a9771948SGleb Smirnoff carpstats.carps_ipackets++; 431a9771948SGleb Smirnoff 432a9771948SGleb Smirnoff if (!carp_opts[CARPCTL_ALLOW]) { 433a9771948SGleb Smirnoff m_freem(m); 434a9771948SGleb Smirnoff return; 435a9771948SGleb Smirnoff } 436a9771948SGleb Smirnoff 437a9771948SGleb Smirnoff /* check if received on a valid carp interface */ 438a9771948SGleb Smirnoff if (m->m_pkthdr.rcvif->if_carp == NULL) { 439a9771948SGleb Smirnoff carpstats.carps_badif++; 44088bf82a6SGleb Smirnoff CARP_LOG("carp_input: packet received on non-carp " 44188bf82a6SGleb Smirnoff "interface: %s\n", 4421e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 443a9771948SGleb Smirnoff m_freem(m); 444a9771948SGleb Smirnoff return; 445a9771948SGleb Smirnoff } 446a9771948SGleb Smirnoff 447a9771948SGleb Smirnoff /* verify that the IP TTL is 255. */ 448a9771948SGleb Smirnoff if (ip->ip_ttl != CARP_DFLTTL) { 449a9771948SGleb Smirnoff carpstats.carps_badttl++; 45088bf82a6SGleb Smirnoff CARP_LOG("carp_input: received ttl %d != 255i on %s\n", 4511e9e6572SGleb Smirnoff ip->ip_ttl, 4521e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 453a9771948SGleb Smirnoff m_freem(m); 454a9771948SGleb Smirnoff return; 455a9771948SGleb Smirnoff } 456a9771948SGleb Smirnoff 457a9771948SGleb Smirnoff iplen = ip->ip_hl << 2; 458a9771948SGleb Smirnoff 459a9771948SGleb Smirnoff if (m->m_pkthdr.len < iplen + sizeof(*ch)) { 460a9771948SGleb Smirnoff carpstats.carps_badlen++; 4611e9e6572SGleb Smirnoff CARP_LOG("carp_input: received len %zd < " 46288bf82a6SGleb Smirnoff "sizeof(struct carp_header)\n", 4631e9e6572SGleb Smirnoff m->m_len - sizeof(struct ip)); 464a9771948SGleb Smirnoff m_freem(m); 465a9771948SGleb Smirnoff return; 466a9771948SGleb Smirnoff } 467a9771948SGleb Smirnoff 468a9771948SGleb Smirnoff if (iplen + sizeof(*ch) < m->m_len) { 469a9771948SGleb Smirnoff if ((m = m_pullup(m, iplen + sizeof(*ch))) == NULL) { 470a9771948SGleb Smirnoff carpstats.carps_hdrops++; 47188bf82a6SGleb Smirnoff CARP_LOG("carp_input: pullup failed\n"); 472a9771948SGleb Smirnoff return; 473a9771948SGleb Smirnoff } 474a9771948SGleb Smirnoff ip = mtod(m, struct ip *); 475a9771948SGleb Smirnoff } 476a9771948SGleb Smirnoff ch = (struct carp_header *)((char *)ip + iplen); 477a9771948SGleb Smirnoff 478a9771948SGleb Smirnoff /* 479a9771948SGleb Smirnoff * verify that the received packet length is 480a9771948SGleb Smirnoff * equal to the CARP header 481a9771948SGleb Smirnoff */ 482a9771948SGleb Smirnoff len = iplen + sizeof(*ch); 483a9771948SGleb Smirnoff if (len > m->m_pkthdr.len) { 484a9771948SGleb Smirnoff carpstats.carps_badlen++; 48588bf82a6SGleb Smirnoff CARP_LOG("carp_input: packet too short %d on %s\n", 4861e9e6572SGleb Smirnoff m->m_pkthdr.len, 4871e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 488a9771948SGleb Smirnoff m_freem(m); 489a9771948SGleb Smirnoff return; 490a9771948SGleb Smirnoff } 491a9771948SGleb Smirnoff 492a9771948SGleb Smirnoff if ((m = m_pullup(m, len)) == NULL) { 493a9771948SGleb Smirnoff carpstats.carps_hdrops++; 494a9771948SGleb Smirnoff return; 495a9771948SGleb Smirnoff } 496a9771948SGleb Smirnoff ip = mtod(m, struct ip *); 497a9771948SGleb Smirnoff ch = (struct carp_header *)((char *)ip + iplen); 498a9771948SGleb Smirnoff 499a9771948SGleb Smirnoff /* verify the CARP checksum */ 500a9771948SGleb Smirnoff m->m_data += iplen; 501a9771948SGleb Smirnoff if (carp_cksum(m, len - iplen)) { 502a9771948SGleb Smirnoff carpstats.carps_badsum++; 50388bf82a6SGleb Smirnoff CARP_LOG("carp_input: checksum failed on %s\n", 5041e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 505a9771948SGleb Smirnoff m_freem(m); 506a9771948SGleb Smirnoff return; 507a9771948SGleb Smirnoff } 508a9771948SGleb Smirnoff m->m_data -= iplen; 509a9771948SGleb Smirnoff 5101e9e6572SGleb Smirnoff carp_input_c(m, ch, AF_INET); 511a9771948SGleb Smirnoff } 512a9771948SGleb Smirnoff 513a9771948SGleb Smirnoff #ifdef INET6 514a9771948SGleb Smirnoff int 515a9771948SGleb Smirnoff carp6_input(struct mbuf **mp, int *offp, int proto) 516a9771948SGleb Smirnoff { 517a9771948SGleb Smirnoff struct mbuf *m = *mp; 518a9771948SGleb Smirnoff struct ip6_hdr *ip6 = mtod(m, struct ip6_hdr *); 519a9771948SGleb Smirnoff struct carp_header *ch; 520a9771948SGleb Smirnoff u_int len; 521a9771948SGleb Smirnoff 522a9771948SGleb Smirnoff carpstats.carps_ipackets6++; 523a9771948SGleb Smirnoff 524a9771948SGleb Smirnoff if (!carp_opts[CARPCTL_ALLOW]) { 525a9771948SGleb Smirnoff m_freem(m); 526a9771948SGleb Smirnoff return (IPPROTO_DONE); 527a9771948SGleb Smirnoff } 528a9771948SGleb Smirnoff 529a9771948SGleb Smirnoff /* check if received on a valid carp interface */ 530a9771948SGleb Smirnoff if (m->m_pkthdr.rcvif->if_carp == NULL) { 531a9771948SGleb Smirnoff carpstats.carps_badif++; 5321e9e6572SGleb Smirnoff CARP_LOG("carp6_input: packet received on non-carp " 53388bf82a6SGleb Smirnoff "interface: %s\n", 5341e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 535a9771948SGleb Smirnoff m_freem(m); 536a9771948SGleb Smirnoff return (IPPROTO_DONE); 537a9771948SGleb Smirnoff } 538a9771948SGleb Smirnoff 539a9771948SGleb Smirnoff /* verify that the IP TTL is 255 */ 540a9771948SGleb Smirnoff if (ip6->ip6_hlim != CARP_DFLTTL) { 541a9771948SGleb Smirnoff carpstats.carps_badttl++; 54288bf82a6SGleb Smirnoff CARP_LOG("carp6_input: received ttl %d != 255 on %s\n", 5431e9e6572SGleb Smirnoff ip6->ip6_hlim, 5441e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 545a9771948SGleb Smirnoff m_freem(m); 546a9771948SGleb Smirnoff return (IPPROTO_DONE); 547a9771948SGleb Smirnoff } 548a9771948SGleb Smirnoff 549a9771948SGleb Smirnoff /* verify that we have a complete carp packet */ 550a9771948SGleb Smirnoff len = m->m_len; 551a9771948SGleb Smirnoff IP6_EXTHDR_GET(ch, struct carp_header *, m, *offp, sizeof(*ch)); 552a9771948SGleb Smirnoff if (ch == NULL) { 553a9771948SGleb Smirnoff carpstats.carps_badlen++; 55488bf82a6SGleb Smirnoff CARP_LOG("carp6_input: packet size %u too small on %s\n", len, 5551e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 556a9771948SGleb Smirnoff return (IPPROTO_DONE); 557a9771948SGleb Smirnoff } 558a9771948SGleb Smirnoff 559a9771948SGleb Smirnoff 560a9771948SGleb Smirnoff /* verify the CARP checksum */ 561a9771948SGleb Smirnoff m->m_data += *offp; 562a9771948SGleb Smirnoff if (carp_cksum(m, sizeof(*ch))) { 563a9771948SGleb Smirnoff carpstats.carps_badsum++; 56488bf82a6SGleb Smirnoff CARP_LOG("carp6_input: checksum failed, on %s\n", 5651e9e6572SGleb Smirnoff m->m_pkthdr.rcvif->if_xname); 566a9771948SGleb Smirnoff m_freem(m); 567a9771948SGleb Smirnoff return (IPPROTO_DONE); 568a9771948SGleb Smirnoff } 569a9771948SGleb Smirnoff m->m_data -= *offp; 570a9771948SGleb Smirnoff 5711e9e6572SGleb Smirnoff carp_input_c(m, ch, AF_INET6); 572a9771948SGleb Smirnoff return (IPPROTO_DONE); 573a9771948SGleb Smirnoff } 574a9771948SGleb Smirnoff #endif /* INET6 */ 575a9771948SGleb Smirnoff 5765c1f0f6dSGleb Smirnoff static void 5771e9e6572SGleb Smirnoff carp_input_c(struct mbuf *m, struct carp_header *ch, sa_family_t af) 578a9771948SGleb Smirnoff { 579a9771948SGleb Smirnoff struct ifnet *ifp = m->m_pkthdr.rcvif; 5801e9e6572SGleb Smirnoff struct carp_softc *sc; 581a9771948SGleb Smirnoff u_int64_t tmp_counter; 582a9771948SGleb Smirnoff struct timeval sc_tv, ch_tv; 583a9771948SGleb Smirnoff 584a9771948SGleb Smirnoff /* verify that the VHID is valid on the receiving interface */ 585a9771948SGleb Smirnoff CARP_LOCK(ifp->if_carp); 586a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &((struct carp_if *)ifp->if_carp)->vhif_vrs, sc_list) 587a9771948SGleb Smirnoff if (sc->sc_vhid == ch->carp_vhid) 588a9771948SGleb Smirnoff break; 589a9771948SGleb Smirnoff CARP_UNLOCK(ifp->if_carp); 590a9771948SGleb Smirnoff if (!sc || (sc->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) != 591a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) { 592a9771948SGleb Smirnoff carpstats.carps_badvhid++; 593a9771948SGleb Smirnoff m_freem(m); 594a9771948SGleb Smirnoff return; 595a9771948SGleb Smirnoff } 596a9771948SGleb Smirnoff 597a9771948SGleb Smirnoff getmicrotime(&sc->sc_if.if_lastchange); 598a9771948SGleb Smirnoff sc->sc_if.if_ipackets++; 599a9771948SGleb Smirnoff sc->sc_if.if_ibytes += m->m_pkthdr.len; 600a9771948SGleb Smirnoff 601a9771948SGleb Smirnoff if (sc->sc_if.if_bpf) { 602a9771948SGleb Smirnoff struct ip *ip = mtod(m, struct ip *); 6033e07def4SGleb Smirnoff uint32_t af1 = af; 604a9771948SGleb Smirnoff 605a9771948SGleb Smirnoff /* BPF wants net byte order */ 6063e07def4SGleb Smirnoff ip->ip_len = htons(ip->ip_len + (ip->ip_hl << 2)); 6073e07def4SGleb Smirnoff ip->ip_off = htons(ip->ip_off); 6083e07def4SGleb Smirnoff bpf_mtap2(sc->sc_if.if_bpf, &af1, sizeof(af1), m); 609a9771948SGleb Smirnoff } 610a9771948SGleb Smirnoff 611a9771948SGleb Smirnoff /* verify the CARP version. */ 612a9771948SGleb Smirnoff if (ch->carp_version != CARP_VERSION) { 613a9771948SGleb Smirnoff carpstats.carps_badver++; 614a9771948SGleb Smirnoff sc->sc_if.if_ierrors++; 61588bf82a6SGleb Smirnoff CARP_LOG("%s; invalid version %d\n", 6161e9e6572SGleb Smirnoff sc->sc_if.if_xname, 6171e9e6572SGleb Smirnoff ch->carp_version); 618a9771948SGleb Smirnoff m_freem(m); 619a9771948SGleb Smirnoff return; 620a9771948SGleb Smirnoff } 621a9771948SGleb Smirnoff 622a9771948SGleb Smirnoff /* verify the hash */ 623a9771948SGleb Smirnoff if (carp_hmac_verify(sc, ch->carp_counter, ch->carp_md)) { 624a9771948SGleb Smirnoff carpstats.carps_badauth++; 625a9771948SGleb Smirnoff sc->sc_if.if_ierrors++; 62688bf82a6SGleb Smirnoff CARP_LOG("%s: incorrect hash\n", sc->sc_if.if_xname); 627a9771948SGleb Smirnoff m_freem(m); 628a9771948SGleb Smirnoff return; 629a9771948SGleb Smirnoff } 630a9771948SGleb Smirnoff 631a9771948SGleb Smirnoff tmp_counter = ntohl(ch->carp_counter[0]); 632a9771948SGleb Smirnoff tmp_counter = tmp_counter<<32; 633a9771948SGleb Smirnoff tmp_counter += ntohl(ch->carp_counter[1]); 634a9771948SGleb Smirnoff 635a9771948SGleb Smirnoff /* XXX Replay protection goes here */ 636a9771948SGleb Smirnoff 637a9771948SGleb Smirnoff sc->sc_init_counter = 0; 638a9771948SGleb Smirnoff sc->sc_counter = tmp_counter; 639a9771948SGleb Smirnoff 640a9771948SGleb Smirnoff sc_tv.tv_sec = sc->sc_advbase; 641a9771948SGleb Smirnoff if (carp_suppress_preempt && sc->sc_advskew < 240) 642a9771948SGleb Smirnoff sc_tv.tv_usec = 240 * 1000000 / 256; 643a9771948SGleb Smirnoff else 644a9771948SGleb Smirnoff sc_tv.tv_usec = sc->sc_advskew * 1000000 / 256; 645a9771948SGleb Smirnoff ch_tv.tv_sec = ch->carp_advbase; 646a9771948SGleb Smirnoff ch_tv.tv_usec = ch->carp_advskew * 1000000 / 256; 647a9771948SGleb Smirnoff 648a9771948SGleb Smirnoff switch (sc->sc_state) { 649a9771948SGleb Smirnoff case INIT: 650a9771948SGleb Smirnoff break; 651a9771948SGleb Smirnoff case MASTER: 652a9771948SGleb Smirnoff /* 653a9771948SGleb Smirnoff * If we receive an advertisement from a master who's going to 654a9771948SGleb Smirnoff * be more frequent than us, go into BACKUP state. 655a9771948SGleb Smirnoff */ 656a9771948SGleb Smirnoff if (timevalcmp(&sc_tv, &ch_tv, >) || 657a9771948SGleb Smirnoff timevalcmp(&sc_tv, &ch_tv, ==)) { 658a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 6591e9e6572SGleb Smirnoff CARP_DEBUG("%s: MASTER -> BACKUP " 66088bf82a6SGleb Smirnoff "(more frequent advertisement received)\n", 6611e9e6572SGleb Smirnoff sc->sc_if.if_xname); 662a9771948SGleb Smirnoff carp_set_state(sc, BACKUP); 663a9771948SGleb Smirnoff carp_setrun(sc, 0); 664a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 665a9771948SGleb Smirnoff } 666a9771948SGleb Smirnoff break; 667a9771948SGleb Smirnoff case BACKUP: 668a9771948SGleb Smirnoff /* 669a9771948SGleb Smirnoff * If we're pre-empting masters who advertise slower than us, 670a9771948SGleb Smirnoff * and this one claims to be slower, treat him as down. 671a9771948SGleb Smirnoff */ 672a9771948SGleb Smirnoff if (carp_opts[CARPCTL_PREEMPT] && 673a9771948SGleb Smirnoff timevalcmp(&sc_tv, &ch_tv, <)) { 6741e9e6572SGleb Smirnoff CARP_DEBUG("%s: BACKUP -> MASTER " 67588bf82a6SGleb Smirnoff "(preempting a slower master)\n", 6761e9e6572SGleb Smirnoff sc->sc_if.if_xname); 677a9771948SGleb Smirnoff carp_master_down(sc); 678a9771948SGleb Smirnoff break; 679a9771948SGleb Smirnoff } 680a9771948SGleb Smirnoff 681a9771948SGleb Smirnoff /* 682a9771948SGleb Smirnoff * If the master is going to advertise at such a low frequency 683a9771948SGleb Smirnoff * that he's guaranteed to time out, we'd might as well just 684a9771948SGleb Smirnoff * treat him as timed out now. 685a9771948SGleb Smirnoff */ 686a9771948SGleb Smirnoff sc_tv.tv_sec = sc->sc_advbase * 3; 687a9771948SGleb Smirnoff if (timevalcmp(&sc_tv, &ch_tv, <)) { 6881e9e6572SGleb Smirnoff CARP_DEBUG("%s: BACKUP -> MASTER " 68988bf82a6SGleb Smirnoff "(master timed out)\n", 6901e9e6572SGleb Smirnoff sc->sc_if.if_xname); 691a9771948SGleb Smirnoff carp_master_down(sc); 692a9771948SGleb Smirnoff break; 693a9771948SGleb Smirnoff } 694a9771948SGleb Smirnoff 695a9771948SGleb Smirnoff /* 696a9771948SGleb Smirnoff * Otherwise, we reset the counter and wait for the next 697a9771948SGleb Smirnoff * advertisement. 698a9771948SGleb Smirnoff */ 699a9771948SGleb Smirnoff carp_setrun(sc, af); 700a9771948SGleb Smirnoff break; 701a9771948SGleb Smirnoff } 702a9771948SGleb Smirnoff 703a9771948SGleb Smirnoff m_freem(m); 704a9771948SGleb Smirnoff return; 705a9771948SGleb Smirnoff } 706a9771948SGleb Smirnoff 7075c1f0f6dSGleb Smirnoff static void 708a9771948SGleb Smirnoff carpdetach(struct carp_softc *sc) 709a9771948SGleb Smirnoff { 710a9771948SGleb Smirnoff struct ifaddr *ifa; 711a9771948SGleb Smirnoff 712a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 713a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 714a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 715a9771948SGleb Smirnoff 716a9771948SGleb Smirnoff while ((ifa = TAILQ_FIRST(&sc->sc_if.if_addrlist)) != NULL) 717a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET) { 718a9771948SGleb Smirnoff struct in_ifaddr *ia = ifatoia(ifa); 719a9771948SGleb Smirnoff 720a9771948SGleb Smirnoff carp_del_addr(sc, &ia->ia_addr); 721a9771948SGleb Smirnoff 722a9771948SGleb Smirnoff /* ripped screaming from in_control(SIOCDIFADDR) */ 723a9771948SGleb Smirnoff in_ifscrub(&sc->sc_if, ia); 724a9771948SGleb Smirnoff TAILQ_REMOVE(&sc->sc_if.if_addrlist, ifa, ifa_link); 725a9771948SGleb Smirnoff TAILQ_REMOVE(&in_ifaddrhead, ia, ia_link); 726a9771948SGleb Smirnoff IFAFREE((&ia->ia_ifa)); 727a9771948SGleb Smirnoff } 728a9771948SGleb Smirnoff } 729a9771948SGleb Smirnoff 730a9771948SGleb Smirnoff /* Detach an interface from the carp. */ 731a9771948SGleb Smirnoff void 732a9771948SGleb Smirnoff carp_ifdetach(struct ifnet *ifp) 733a9771948SGleb Smirnoff { 734a9771948SGleb Smirnoff struct carp_softc *sc; 735a9771948SGleb Smirnoff struct carp_if *cif = (struct carp_if *)ifp->if_carp; 736a9771948SGleb Smirnoff 737a9771948SGleb Smirnoff CARP_LOCK(cif); 738a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &cif->vhif_vrs, sc_list) 739a9771948SGleb Smirnoff carpdetach(sc); 740a9771948SGleb Smirnoff CARP_UNLOCK(cif); 741a9771948SGleb Smirnoff } 742a9771948SGleb Smirnoff 7435c1f0f6dSGleb Smirnoff static int 744a9771948SGleb Smirnoff carp_prepare_ad(struct mbuf *m, struct carp_softc *sc, struct carp_header *ch) 745a9771948SGleb Smirnoff { 746a9771948SGleb Smirnoff struct m_tag *mtag; 747a9771948SGleb Smirnoff struct ifnet *ifp = &sc->sc_if; 748a9771948SGleb Smirnoff 749a9771948SGleb Smirnoff if (sc->sc_init_counter) { 750a9771948SGleb Smirnoff /* this could also be seconds since unix epoch */ 751a9771948SGleb Smirnoff sc->sc_counter = arc4random(); 752a9771948SGleb Smirnoff sc->sc_counter = sc->sc_counter << 32; 753a9771948SGleb Smirnoff sc->sc_counter += arc4random(); 754a9771948SGleb Smirnoff } else 755a9771948SGleb Smirnoff sc->sc_counter++; 756a9771948SGleb Smirnoff 757a9771948SGleb Smirnoff ch->carp_counter[0] = htonl((sc->sc_counter>>32)&0xffffffff); 758a9771948SGleb Smirnoff ch->carp_counter[1] = htonl(sc->sc_counter&0xffffffff); 759a9771948SGleb Smirnoff 760a9771948SGleb Smirnoff carp_hmac_generate(sc, ch->carp_counter, ch->carp_md); 761a9771948SGleb Smirnoff 762a9771948SGleb Smirnoff /* Tag packet for carp_output */ 763a9771948SGleb Smirnoff mtag = m_tag_get(PACKET_TAG_CARP, sizeof(struct ifnet *), M_NOWAIT); 764a9771948SGleb Smirnoff if (mtag == NULL) { 765a9771948SGleb Smirnoff m_freem(m); 766a9771948SGleb Smirnoff sc->sc_if.if_oerrors++; 767a9771948SGleb Smirnoff return (ENOMEM); 768a9771948SGleb Smirnoff } 769a9771948SGleb Smirnoff bcopy(&ifp, (caddr_t)(mtag + 1), sizeof(struct ifnet *)); 770a9771948SGleb Smirnoff m_tag_prepend(m, mtag); 771a9771948SGleb Smirnoff 772a9771948SGleb Smirnoff return (0); 773a9771948SGleb Smirnoff } 774a9771948SGleb Smirnoff 7755c1f0f6dSGleb Smirnoff static void 776a9771948SGleb Smirnoff carp_send_ad_all(void) 777a9771948SGleb Smirnoff { 778d92d54d5SGleb Smirnoff struct carp_softc *sc; 779a9771948SGleb Smirnoff 780d92d54d5SGleb Smirnoff mtx_lock(&carp_mtx); 781d92d54d5SGleb Smirnoff LIST_FOREACH(sc, &carpif_list, sc_next) { 782d92d54d5SGleb Smirnoff if (sc->sc_carpdev == NULL) 783a9771948SGleb Smirnoff continue; 784d92d54d5SGleb Smirnoff CARP_SCLOCK(sc); 785d92d54d5SGleb Smirnoff if ((sc->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) && 786d92d54d5SGleb Smirnoff sc->sc_state == MASTER) 787d92d54d5SGleb Smirnoff carp_send_ad(sc); 788d92d54d5SGleb Smirnoff CARP_SCUNLOCK(sc); 789a9771948SGleb Smirnoff } 790d92d54d5SGleb Smirnoff mtx_unlock(&carp_mtx); 791a9771948SGleb Smirnoff } 792a9771948SGleb Smirnoff 7935c1f0f6dSGleb Smirnoff static void 794a9771948SGleb Smirnoff carp_send_ad(void *v) 795a9771948SGleb Smirnoff { 796a9771948SGleb Smirnoff struct carp_header ch; 797a9771948SGleb Smirnoff struct timeval tv; 798a9771948SGleb Smirnoff struct carp_softc *sc = v; 799a9771948SGleb Smirnoff struct carp_header *ch_ptr; 800a9771948SGleb Smirnoff struct mbuf *m; 801a9771948SGleb Smirnoff int len, advbase, advskew; 802a9771948SGleb Smirnoff 803a9771948SGleb Smirnoff /* bow out if we've lost our UPness or RUNNINGuiness */ 804a9771948SGleb Smirnoff if ((sc->sc_if.if_flags & 805a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) != (IFF_UP|IFF_RUNNING)) { 806a9771948SGleb Smirnoff advbase = 255; 807a9771948SGleb Smirnoff advskew = 255; 808a9771948SGleb Smirnoff } else { 809a9771948SGleb Smirnoff advbase = sc->sc_advbase; 810a9771948SGleb Smirnoff if (!carp_suppress_preempt || sc->sc_advskew > 240) 811a9771948SGleb Smirnoff advskew = sc->sc_advskew; 812a9771948SGleb Smirnoff else 813a9771948SGleb Smirnoff advskew = 240; 814a9771948SGleb Smirnoff tv.tv_sec = advbase; 815a9771948SGleb Smirnoff tv.tv_usec = advskew * 1000000 / 256; 816a9771948SGleb Smirnoff } 817a9771948SGleb Smirnoff 818a9771948SGleb Smirnoff ch.carp_version = CARP_VERSION; 819a9771948SGleb Smirnoff ch.carp_type = CARP_ADVERTISEMENT; 820a9771948SGleb Smirnoff ch.carp_vhid = sc->sc_vhid; 821a9771948SGleb Smirnoff ch.carp_advbase = advbase; 822a9771948SGleb Smirnoff ch.carp_advskew = advskew; 823a9771948SGleb Smirnoff ch.carp_authlen = 7; /* XXX DEFINE */ 824a9771948SGleb Smirnoff ch.carp_pad1 = 0; /* must be zero */ 825a9771948SGleb Smirnoff ch.carp_cksum = 0; 826a9771948SGleb Smirnoff 827a9771948SGleb Smirnoff #ifdef INET 828a9771948SGleb Smirnoff if (sc->sc_ia) { 829a9771948SGleb Smirnoff struct ip *ip; 830a9771948SGleb Smirnoff 831a9771948SGleb Smirnoff MGETHDR(m, M_DONTWAIT, MT_HEADER); 832a9771948SGleb Smirnoff if (m == NULL) { 833a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_oerrors++; 834a9771948SGleb Smirnoff carpstats.carps_onomem++; 835a9771948SGleb Smirnoff /* XXX maybe less ? */ 836a9771948SGleb Smirnoff if (advbase != 255 || advskew != 255) 837a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 838a9771948SGleb Smirnoff carp_send_ad, sc); 839a9771948SGleb Smirnoff return; 840a9771948SGleb Smirnoff } 841a9771948SGleb Smirnoff len = sizeof(*ip) + sizeof(ch); 842a9771948SGleb Smirnoff m->m_pkthdr.len = len; 843a9771948SGleb Smirnoff m->m_pkthdr.rcvif = NULL; 844a9771948SGleb Smirnoff m->m_len = len; 845a9771948SGleb Smirnoff MH_ALIGN(m, m->m_len); 846a9771948SGleb Smirnoff m->m_flags |= M_MCAST; 847a9771948SGleb Smirnoff ip = mtod(m, struct ip *); 848a9771948SGleb Smirnoff ip->ip_v = IPVERSION; 849a9771948SGleb Smirnoff ip->ip_hl = sizeof(*ip) >> 2; 850a9771948SGleb Smirnoff ip->ip_tos = IPTOS_LOWDELAY; 851a9771948SGleb Smirnoff ip->ip_len = len; 852a9771948SGleb Smirnoff ip->ip_id = ip_newid(); 853a9771948SGleb Smirnoff ip->ip_off = IP_DF; 854a9771948SGleb Smirnoff ip->ip_ttl = CARP_DFLTTL; 855a9771948SGleb Smirnoff ip->ip_p = IPPROTO_CARP; 856a9771948SGleb Smirnoff ip->ip_sum = 0; 857a9771948SGleb Smirnoff ip->ip_src.s_addr = sc->sc_ia->ia_addr.sin_addr.s_addr; 858a9771948SGleb Smirnoff ip->ip_dst.s_addr = htonl(INADDR_CARP_GROUP); 859a9771948SGleb Smirnoff 860a9771948SGleb Smirnoff ch_ptr = (struct carp_header *)(&ip[1]); 861a9771948SGleb Smirnoff bcopy(&ch, ch_ptr, sizeof(ch)); 862a9771948SGleb Smirnoff if (carp_prepare_ad(m, sc, ch_ptr)) 863a9771948SGleb Smirnoff return; 864a9771948SGleb Smirnoff 865a9771948SGleb Smirnoff m->m_data += sizeof(*ip); 866a9771948SGleb Smirnoff ch_ptr->carp_cksum = carp_cksum(m, len - sizeof(*ip)); 867a9771948SGleb Smirnoff m->m_data -= sizeof(*ip); 868a9771948SGleb Smirnoff 869a9771948SGleb Smirnoff getmicrotime(&sc->sc_if.if_lastchange); 870a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_opackets++; 871a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_obytes += len; 872a9771948SGleb Smirnoff carpstats.carps_opackets++; 873a9771948SGleb Smirnoff 874a9771948SGleb Smirnoff if (ip_output(m, NULL, NULL, IP_RAWOUTPUT, &sc->sc_imo, NULL)) { 875a9771948SGleb Smirnoff sc->sc_if.if_oerrors++; 876a9771948SGleb Smirnoff if (sc->sc_sendad_errors < INT_MAX) 877a9771948SGleb Smirnoff sc->sc_sendad_errors++; 878a9771948SGleb Smirnoff if (sc->sc_sendad_errors == CARP_SENDAD_MAX_ERRORS) { 879a9771948SGleb Smirnoff carp_suppress_preempt++; 880a9771948SGleb Smirnoff if (carp_suppress_preempt == 1) 881a9771948SGleb Smirnoff carp_send_ad_all(); 882a9771948SGleb Smirnoff } 883a9771948SGleb Smirnoff sc->sc_sendad_success = 0; 884a9771948SGleb Smirnoff } else { 885a9771948SGleb Smirnoff if (sc->sc_sendad_errors >= CARP_SENDAD_MAX_ERRORS) { 886a9771948SGleb Smirnoff if (++sc->sc_sendad_success >= 887a9771948SGleb Smirnoff CARP_SENDAD_MIN_SUCCESS) { 888a9771948SGleb Smirnoff carp_suppress_preempt--; 889a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 890a9771948SGleb Smirnoff } 891a9771948SGleb Smirnoff } else 892a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 893a9771948SGleb Smirnoff } 894a9771948SGleb Smirnoff } 895a9771948SGleb Smirnoff #endif /* INET */ 896a9771948SGleb Smirnoff #ifdef INET6 897a9771948SGleb Smirnoff if (sc->sc_ia6) { 898a9771948SGleb Smirnoff struct ip6_hdr *ip6; 899a9771948SGleb Smirnoff 900a9771948SGleb Smirnoff MGETHDR(m, M_DONTWAIT, MT_HEADER); 901a9771948SGleb Smirnoff if (m == NULL) { 902a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_oerrors++; 903a9771948SGleb Smirnoff carpstats.carps_onomem++; 904a9771948SGleb Smirnoff /* XXX maybe less ? */ 905a9771948SGleb Smirnoff if (advbase != 255 || advskew != 255) 906a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 907a9771948SGleb Smirnoff carp_send_ad, sc); 908a9771948SGleb Smirnoff return; 909a9771948SGleb Smirnoff } 910a9771948SGleb Smirnoff len = sizeof(*ip6) + sizeof(ch); 911a9771948SGleb Smirnoff m->m_pkthdr.len = len; 912a9771948SGleb Smirnoff m->m_pkthdr.rcvif = NULL; 913a9771948SGleb Smirnoff m->m_len = len; 914a9771948SGleb Smirnoff MH_ALIGN(m, m->m_len); 915a9771948SGleb Smirnoff m->m_flags |= M_MCAST; 916a9771948SGleb Smirnoff ip6 = mtod(m, struct ip6_hdr *); 917a9771948SGleb Smirnoff bzero(ip6, sizeof(*ip6)); 918a9771948SGleb Smirnoff ip6->ip6_vfc |= IPV6_VERSION; 919a9771948SGleb Smirnoff ip6->ip6_hlim = CARP_DFLTTL; 920a9771948SGleb Smirnoff ip6->ip6_nxt = IPPROTO_CARP; 921a9771948SGleb Smirnoff bcopy(&sc->sc_ia6->ia_addr.sin6_addr, &ip6->ip6_src, 922a9771948SGleb Smirnoff sizeof(struct in6_addr)); 923a9771948SGleb Smirnoff /* set the multicast destination */ 924a9771948SGleb Smirnoff 925a9771948SGleb Smirnoff ip6->ip6_dst.s6_addr8[0] = 0xff; 926a9771948SGleb Smirnoff ip6->ip6_dst.s6_addr8[1] = 0x02; 927a9771948SGleb Smirnoff ip6->ip6_dst.s6_addr8[15] = 0x12; 928a9771948SGleb Smirnoff 929a9771948SGleb Smirnoff ch_ptr = (struct carp_header *)(&ip6[1]); 930a9771948SGleb Smirnoff bcopy(&ch, ch_ptr, sizeof(ch)); 931a9771948SGleb Smirnoff if (carp_prepare_ad(m, sc, ch_ptr)) 932a9771948SGleb Smirnoff return; 933a9771948SGleb Smirnoff 934a9771948SGleb Smirnoff m->m_data += sizeof(*ip6); 935a9771948SGleb Smirnoff ch_ptr->carp_cksum = carp_cksum(m, len - sizeof(*ip6)); 936a9771948SGleb Smirnoff m->m_data -= sizeof(*ip6); 937a9771948SGleb Smirnoff 938a9771948SGleb Smirnoff getmicrotime(&sc->sc_if.if_lastchange); 939a9771948SGleb Smirnoff sc->sc_if.if_opackets++; 940a9771948SGleb Smirnoff sc->sc_if.if_obytes += len; 941a9771948SGleb Smirnoff carpstats.carps_opackets6++; 942a9771948SGleb Smirnoff 943a9771948SGleb Smirnoff if (ip6_output(m, NULL, NULL, 0, &sc->sc_im6o, NULL, NULL)) { 944a9771948SGleb Smirnoff sc->sc_if.if_oerrors++; 945a9771948SGleb Smirnoff if (sc->sc_sendad_errors < INT_MAX) 946a9771948SGleb Smirnoff sc->sc_sendad_errors++; 947a9771948SGleb Smirnoff if (sc->sc_sendad_errors == CARP_SENDAD_MAX_ERRORS) { 948a9771948SGleb Smirnoff carp_suppress_preempt++; 949a9771948SGleb Smirnoff if (carp_suppress_preempt == 1) 950a9771948SGleb Smirnoff carp_send_ad_all(); 951a9771948SGleb Smirnoff } 952a9771948SGleb Smirnoff sc->sc_sendad_success = 0; 953a9771948SGleb Smirnoff } else { 954a9771948SGleb Smirnoff if (sc->sc_sendad_errors >= CARP_SENDAD_MAX_ERRORS) { 955a9771948SGleb Smirnoff if (++sc->sc_sendad_success >= 956a9771948SGleb Smirnoff CARP_SENDAD_MIN_SUCCESS) { 957a9771948SGleb Smirnoff carp_suppress_preempt--; 958a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 959a9771948SGleb Smirnoff } 960a9771948SGleb Smirnoff } else 961a9771948SGleb Smirnoff sc->sc_sendad_errors = 0; 962a9771948SGleb Smirnoff } 963a9771948SGleb Smirnoff } 964a9771948SGleb Smirnoff #endif /* INET6 */ 965a9771948SGleb Smirnoff 966a9771948SGleb Smirnoff if (advbase != 255 || advskew != 255) 967a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 968a9771948SGleb Smirnoff carp_send_ad, sc); 969a9771948SGleb Smirnoff 970a9771948SGleb Smirnoff } 971a9771948SGleb Smirnoff 972a9771948SGleb Smirnoff /* 973a9771948SGleb Smirnoff * Broadcast a gratuitous ARP request containing 974a9771948SGleb Smirnoff * the virtual router MAC address for each IP address 975a9771948SGleb Smirnoff * associated with the virtual router. 976a9771948SGleb Smirnoff */ 9775c1f0f6dSGleb Smirnoff static void 978a9771948SGleb Smirnoff carp_send_arp(struct carp_softc *sc) 979a9771948SGleb Smirnoff { 980a9771948SGleb Smirnoff struct ifaddr *ifa; 981a9771948SGleb Smirnoff 982a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 983a9771948SGleb Smirnoff 984a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family != AF_INET) 985a9771948SGleb Smirnoff continue; 986a9771948SGleb Smirnoff 987e8c34a71SGleb Smirnoff /* arprequest(sc->sc_carpdev, &in, &in, sc->sc_ac.ac_enaddr); */ 988e8c34a71SGleb Smirnoff arp_ifinit2(sc->sc_carpdev, ifa, sc->sc_ac.ac_enaddr); 989a9771948SGleb Smirnoff 990a9771948SGleb Smirnoff DELAY(1000); /* XXX */ 991a9771948SGleb Smirnoff } 992a9771948SGleb Smirnoff } 993a9771948SGleb Smirnoff 994a9771948SGleb Smirnoff #ifdef INET6 9955c1f0f6dSGleb Smirnoff static void 996a9771948SGleb Smirnoff carp_send_na(struct carp_softc *sc) 997a9771948SGleb Smirnoff { 998a9771948SGleb Smirnoff struct ifaddr *ifa; 999a9771948SGleb Smirnoff struct in6_addr *in6; 1000a9771948SGleb Smirnoff static struct in6_addr mcast = IN6ADDR_LINKLOCAL_ALLNODES_INIT; 1001a9771948SGleb Smirnoff 1002a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 1003a9771948SGleb Smirnoff 1004a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family != AF_INET6) 1005a9771948SGleb Smirnoff continue; 1006a9771948SGleb Smirnoff 1007a9771948SGleb Smirnoff in6 = &ifatoia6(ifa)->ia_addr.sin6_addr; 1008e8c34a71SGleb Smirnoff nd6_na_output(sc->sc_carpdev, &mcast, in6, 1009a9771948SGleb Smirnoff ND_NA_FLAG_OVERRIDE, 1, NULL); 1010a9771948SGleb Smirnoff DELAY(1000); /* XXX */ 1011a9771948SGleb Smirnoff } 1012a9771948SGleb Smirnoff } 1013a9771948SGleb Smirnoff #endif /* INET6 */ 1014a9771948SGleb Smirnoff 10155c1f0f6dSGleb Smirnoff static int 1016a9771948SGleb Smirnoff carp_addrcount(struct carp_if *cif, struct in_ifaddr *ia, int type) 1017a9771948SGleb Smirnoff { 1018a9771948SGleb Smirnoff struct carp_softc *vh; 1019a9771948SGleb Smirnoff struct ifaddr *ifa; 1020a9771948SGleb Smirnoff int count = 0; 1021a9771948SGleb Smirnoff 1022a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1023a9771948SGleb Smirnoff if ((type == CARP_COUNT_RUNNING && 1024a9771948SGleb Smirnoff (vh->sc_ac.ac_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1025a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) || 1026a9771948SGleb Smirnoff (type == CARP_COUNT_MASTER && vh->sc_state == MASTER)) { 1027a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &vh->sc_ac.ac_if.if_addrlist, 1028a9771948SGleb Smirnoff ifa_list) { 1029a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == AF_INET && 1030a9771948SGleb Smirnoff ia->ia_addr.sin_addr.s_addr == 1031a9771948SGleb Smirnoff ifatoia(ifa)->ia_addr.sin_addr.s_addr) 1032a9771948SGleb Smirnoff count++; 1033a9771948SGleb Smirnoff } 1034a9771948SGleb Smirnoff } 1035a9771948SGleb Smirnoff } 1036a9771948SGleb Smirnoff return (count); 1037a9771948SGleb Smirnoff } 1038a9771948SGleb Smirnoff 1039a9771948SGleb Smirnoff int 1040a9771948SGleb Smirnoff carp_iamatch(void *v, struct in_ifaddr *ia, 1041a9771948SGleb Smirnoff struct in_addr *isaddr, u_int8_t **enaddr) 1042a9771948SGleb Smirnoff { 1043a9771948SGleb Smirnoff struct carp_if *cif = v; 1044a9771948SGleb Smirnoff struct carp_softc *vh; 1045a9771948SGleb Smirnoff int index, count = 0; 1046a9771948SGleb Smirnoff struct ifaddr *ifa; 1047a9771948SGleb Smirnoff 1048a9771948SGleb Smirnoff CARP_LOCK(cif); 1049a9771948SGleb Smirnoff 1050a9771948SGleb Smirnoff if (carp_opts[CARPCTL_ARPBALANCE]) { 1051a9771948SGleb Smirnoff /* 1052a9771948SGleb Smirnoff * XXX proof of concept implementation. 1053a9771948SGleb Smirnoff * We use the source ip to decide which virtual host should 1054a9771948SGleb Smirnoff * handle the request. If we're master of that virtual host, 1055a9771948SGleb Smirnoff * then we respond, otherwise, just drop the arp packet on 1056a9771948SGleb Smirnoff * the floor. 1057a9771948SGleb Smirnoff */ 1058a9771948SGleb Smirnoff count = carp_addrcount(cif, ia, CARP_COUNT_RUNNING); 1059a9771948SGleb Smirnoff if (count == 0) { 1060a9771948SGleb Smirnoff /* should never reach this */ 1061a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1062a9771948SGleb Smirnoff return (0); 1063a9771948SGleb Smirnoff } 1064a9771948SGleb Smirnoff 1065a9771948SGleb Smirnoff /* this should be a hash, like pf_hash() */ 1066a9771948SGleb Smirnoff index = isaddr->s_addr % count; 1067a9771948SGleb Smirnoff count = 0; 1068a9771948SGleb Smirnoff 1069a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1070a9771948SGleb Smirnoff if ((vh->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1071a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) { 1072a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &vh->sc_if.if_addrlist, 1073a9771948SGleb Smirnoff ifa_list) { 1074a9771948SGleb Smirnoff if (ifa->ifa_addr->sa_family == 1075a9771948SGleb Smirnoff AF_INET && 1076a9771948SGleb Smirnoff ia->ia_addr.sin_addr.s_addr == 1077a9771948SGleb Smirnoff ifatoia(ifa)->ia_addr.sin_addr.s_addr) { 1078a9771948SGleb Smirnoff if (count == index) { 1079a9771948SGleb Smirnoff if (vh->sc_state == 1080a9771948SGleb Smirnoff MASTER) { 1081a9771948SGleb Smirnoff *enaddr = vh->sc_ac.ac_enaddr; 1082a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1083a9771948SGleb Smirnoff return (1); 1084a9771948SGleb Smirnoff } else { 1085a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1086a9771948SGleb Smirnoff return (0); 1087a9771948SGleb Smirnoff } 1088a9771948SGleb Smirnoff } 1089a9771948SGleb Smirnoff count++; 1090a9771948SGleb Smirnoff } 1091a9771948SGleb Smirnoff } 1092a9771948SGleb Smirnoff } 1093a9771948SGleb Smirnoff } 1094a9771948SGleb Smirnoff } else { 1095a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1096a9771948SGleb Smirnoff if ((vh->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1097a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING) && ia->ia_ifp == 1098a9771948SGleb Smirnoff &vh->sc_if) { 1099a9771948SGleb Smirnoff *enaddr = vh->sc_ac.ac_enaddr; 1100a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1101a9771948SGleb Smirnoff return (1); 1102a9771948SGleb Smirnoff } 1103a9771948SGleb Smirnoff } 1104a9771948SGleb Smirnoff } 1105a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1106a9771948SGleb Smirnoff return (0); 1107a9771948SGleb Smirnoff } 1108a9771948SGleb Smirnoff 1109a9771948SGleb Smirnoff #ifdef INET6 1110a4e53905SMax Laier struct ifaddr * 1111a9771948SGleb Smirnoff carp_iamatch6(void *v, struct in6_addr *taddr) 1112a9771948SGleb Smirnoff { 1113a9771948SGleb Smirnoff struct carp_if *cif = v; 1114a9771948SGleb Smirnoff struct carp_softc *vh; 1115a9771948SGleb Smirnoff struct ifaddr *ifa; 1116a9771948SGleb Smirnoff 1117a9771948SGleb Smirnoff CARP_LOCK(cif); 1118a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) { 1119a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &vh->sc_if.if_addrlist, ifa_list) { 1120a9771948SGleb Smirnoff if (IN6_ARE_ADDR_EQUAL(taddr, 1121a9771948SGleb Smirnoff &ifatoia6(ifa)->ia_addr.sin6_addr) && 1122a9771948SGleb Smirnoff ((vh->sc_if.if_flags & 1123a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) == (IFF_UP|IFF_RUNNING))) { 1124a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1125a9771948SGleb Smirnoff return (ifa); 1126a9771948SGleb Smirnoff } 1127a9771948SGleb Smirnoff } 1128a9771948SGleb Smirnoff } 1129a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1130a9771948SGleb Smirnoff 1131a9771948SGleb Smirnoff return (NULL); 1132a9771948SGleb Smirnoff } 1133a9771948SGleb Smirnoff 1134a4e53905SMax Laier void * 1135a9771948SGleb Smirnoff carp_macmatch6(void *v, struct mbuf *m, const struct in6_addr *taddr) 1136a9771948SGleb Smirnoff { 1137a9771948SGleb Smirnoff struct m_tag *mtag; 1138a9771948SGleb Smirnoff struct carp_if *cif = v; 1139a9771948SGleb Smirnoff struct carp_softc *sc; 1140a9771948SGleb Smirnoff struct ifaddr *ifa; 1141a9771948SGleb Smirnoff 1142a9771948SGleb Smirnoff CARP_LOCK(cif); 1143a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &cif->vhif_vrs, sc_list) { 1144a9771948SGleb Smirnoff TAILQ_FOREACH(ifa, &sc->sc_if.if_addrlist, ifa_list) { 1145a9771948SGleb Smirnoff if (IN6_ARE_ADDR_EQUAL(taddr, 1146a9771948SGleb Smirnoff &ifatoia6(ifa)->ia_addr.sin6_addr) && 1147a9771948SGleb Smirnoff ((sc->sc_if.if_flags & 1148a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING)) == (IFF_UP|IFF_RUNNING))) { 1149a9771948SGleb Smirnoff struct ifnet *ifp = &sc->sc_if; 1150a9771948SGleb Smirnoff mtag = m_tag_get(PACKET_TAG_CARP, 1151a9771948SGleb Smirnoff sizeof(struct ifnet *), M_NOWAIT); 1152a9771948SGleb Smirnoff if (mtag == NULL) { 1153a9771948SGleb Smirnoff /* better a bit than nothing */ 1154a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1155a9771948SGleb Smirnoff return (sc->sc_ac.ac_enaddr); 1156a9771948SGleb Smirnoff } 1157a9771948SGleb Smirnoff bcopy(&ifp, (caddr_t)(mtag + 1), 1158a9771948SGleb Smirnoff sizeof(struct ifnet *)); 1159a9771948SGleb Smirnoff m_tag_prepend(m, mtag); 1160a9771948SGleb Smirnoff 1161a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1162a9771948SGleb Smirnoff return (sc->sc_ac.ac_enaddr); 1163a9771948SGleb Smirnoff } 1164a9771948SGleb Smirnoff } 1165a9771948SGleb Smirnoff } 1166a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1167a9771948SGleb Smirnoff 1168a9771948SGleb Smirnoff return (NULL); 1169a9771948SGleb Smirnoff } 1170a9771948SGleb Smirnoff #endif 1171a9771948SGleb Smirnoff 1172a9771948SGleb Smirnoff struct ifnet * 1173a9771948SGleb Smirnoff carp_forus(void *v, void *dhost) 1174a9771948SGleb Smirnoff { 1175a9771948SGleb Smirnoff struct carp_if *cif = v; 1176a9771948SGleb Smirnoff struct carp_softc *vh; 1177a9771948SGleb Smirnoff u_int8_t *ena = dhost; 1178a9771948SGleb Smirnoff 1179a9771948SGleb Smirnoff if (ena[0] || ena[1] || ena[2] != 0x5e || ena[3] || ena[4] != 1) 1180a9771948SGleb Smirnoff return (NULL); 1181a9771948SGleb Smirnoff 1182a9771948SGleb Smirnoff CARP_LOCK(cif); 1183a9771948SGleb Smirnoff TAILQ_FOREACH(vh, &cif->vhif_vrs, sc_list) 1184a9771948SGleb Smirnoff if ((vh->sc_if.if_flags & (IFF_UP|IFF_RUNNING)) == 1185a9771948SGleb Smirnoff (IFF_UP|IFF_RUNNING) && vh->sc_state == MASTER && 1186a9771948SGleb Smirnoff !bcmp(dhost, vh->sc_ac.ac_enaddr, ETHER_ADDR_LEN)) { 1187a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1188a9771948SGleb Smirnoff return (&vh->sc_if); 1189a9771948SGleb Smirnoff } 1190a9771948SGleb Smirnoff 1191a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1192a9771948SGleb Smirnoff return (NULL); 1193a9771948SGleb Smirnoff } 1194a9771948SGleb Smirnoff 11955c1f0f6dSGleb Smirnoff static void 1196a9771948SGleb Smirnoff carp_master_down(void *v) 1197a9771948SGleb Smirnoff { 1198a9771948SGleb Smirnoff struct carp_softc *sc = v; 1199a9771948SGleb Smirnoff 1200a9771948SGleb Smirnoff switch (sc->sc_state) { 1201a9771948SGleb Smirnoff case INIT: 1202a9771948SGleb Smirnoff printf("%s: master_down event in INIT state\n", 1203a9771948SGleb Smirnoff sc->sc_if.if_xname); 1204a9771948SGleb Smirnoff break; 1205a9771948SGleb Smirnoff case MASTER: 1206a9771948SGleb Smirnoff break; 1207a9771948SGleb Smirnoff case BACKUP: 1208a9771948SGleb Smirnoff carp_set_state(sc, MASTER); 1209a9771948SGleb Smirnoff carp_send_ad(sc); 1210a9771948SGleb Smirnoff carp_send_arp(sc); 1211a9771948SGleb Smirnoff #ifdef INET6 1212a9771948SGleb Smirnoff carp_send_na(sc); 1213a9771948SGleb Smirnoff #endif /* INET6 */ 1214a9771948SGleb Smirnoff carp_setrun(sc, 0); 1215a9771948SGleb Smirnoff carp_setroute(sc, RTM_ADD); 1216a9771948SGleb Smirnoff break; 1217a9771948SGleb Smirnoff } 1218a9771948SGleb Smirnoff } 1219a9771948SGleb Smirnoff 1220a9771948SGleb Smirnoff /* 1221a9771948SGleb Smirnoff * When in backup state, af indicates whether to reset the master down timer 1222a9771948SGleb Smirnoff * for v4 or v6. If it's set to zero, reset the ones which are already pending. 1223a9771948SGleb Smirnoff */ 12245c1f0f6dSGleb Smirnoff static void 1225a9771948SGleb Smirnoff carp_setrun(struct carp_softc *sc, sa_family_t af) 1226a9771948SGleb Smirnoff { 1227a9771948SGleb Smirnoff struct timeval tv; 1228a9771948SGleb Smirnoff 1229a9771948SGleb Smirnoff if (sc->sc_if.if_flags & IFF_UP && 1230a9771948SGleb Smirnoff sc->sc_vhid > 0 && (sc->sc_naddrs || sc->sc_naddrs6)) 1231a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_RUNNING; 1232a9771948SGleb Smirnoff else { 1233a9771948SGleb Smirnoff sc->sc_if.if_flags &= ~IFF_RUNNING; 1234a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 1235a9771948SGleb Smirnoff return; 1236a9771948SGleb Smirnoff } 1237a9771948SGleb Smirnoff 1238a9771948SGleb Smirnoff switch (sc->sc_state) { 1239a9771948SGleb Smirnoff case INIT: 1240a9771948SGleb Smirnoff if (carp_opts[CARPCTL_PREEMPT] && !carp_suppress_preempt) { 1241a9771948SGleb Smirnoff carp_send_ad(sc); 1242a9771948SGleb Smirnoff carp_send_arp(sc); 1243a9771948SGleb Smirnoff #ifdef INET6 1244a9771948SGleb Smirnoff carp_send_na(sc); 1245a9771948SGleb Smirnoff #endif /* INET6 */ 124688bf82a6SGleb Smirnoff CARP_DEBUG("%s: INIT -> MASTER (preempting)\n", 12471e9e6572SGleb Smirnoff sc->sc_if.if_xname); 1248a9771948SGleb Smirnoff carp_set_state(sc, MASTER); 1249a9771948SGleb Smirnoff carp_setroute(sc, RTM_ADD); 1250a9771948SGleb Smirnoff } else { 125188bf82a6SGleb Smirnoff CARP_DEBUG("%s: INIT -> BACKUP\n", sc->sc_if.if_xname); 1252a9771948SGleb Smirnoff carp_set_state(sc, BACKUP); 1253a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 1254a9771948SGleb Smirnoff carp_setrun(sc, 0); 1255a9771948SGleb Smirnoff } 1256a9771948SGleb Smirnoff break; 1257a9771948SGleb Smirnoff case BACKUP: 1258a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1259a9771948SGleb Smirnoff tv.tv_sec = 3 * sc->sc_advbase; 1260a9771948SGleb Smirnoff tv.tv_usec = sc->sc_advskew * 1000000 / 256; 1261a9771948SGleb Smirnoff switch (af) { 1262a9771948SGleb Smirnoff #ifdef INET 1263a9771948SGleb Smirnoff case AF_INET: 1264a9771948SGleb Smirnoff callout_reset(&sc->sc_md_tmo, tvtohz(&tv), 1265a9771948SGleb Smirnoff carp_master_down, sc); 1266a9771948SGleb Smirnoff break; 1267a9771948SGleb Smirnoff #endif /* INET */ 1268a9771948SGleb Smirnoff #ifdef INET6 1269a9771948SGleb Smirnoff case AF_INET6: 1270a9771948SGleb Smirnoff callout_reset(&sc->sc_md6_tmo, tvtohz(&tv), 1271a9771948SGleb Smirnoff carp_master_down, sc); 1272a9771948SGleb Smirnoff break; 1273a9771948SGleb Smirnoff #endif /* INET6 */ 1274a9771948SGleb Smirnoff default: 1275a9771948SGleb Smirnoff if (sc->sc_naddrs) 1276a9771948SGleb Smirnoff callout_reset(&sc->sc_md_tmo, tvtohz(&tv), 1277a9771948SGleb Smirnoff carp_master_down, sc); 1278a9771948SGleb Smirnoff if (sc->sc_naddrs6) 1279a9771948SGleb Smirnoff callout_reset(&sc->sc_md6_tmo, tvtohz(&tv), 1280a9771948SGleb Smirnoff carp_master_down, sc); 1281a9771948SGleb Smirnoff break; 1282a9771948SGleb Smirnoff } 1283a9771948SGleb Smirnoff break; 1284a9771948SGleb Smirnoff case MASTER: 1285a9771948SGleb Smirnoff tv.tv_sec = sc->sc_advbase; 1286a9771948SGleb Smirnoff tv.tv_usec = sc->sc_advskew * 1000000 / 256; 1287a9771948SGleb Smirnoff callout_reset(&sc->sc_ad_tmo, tvtohz(&tv), 1288a9771948SGleb Smirnoff carp_send_ad, sc); 1289a9771948SGleb Smirnoff break; 1290a9771948SGleb Smirnoff } 1291a9771948SGleb Smirnoff } 1292a9771948SGleb Smirnoff 12935c1f0f6dSGleb Smirnoff static int 1294a9771948SGleb Smirnoff carp_set_addr(struct carp_softc *sc, struct sockaddr_in *sin) 1295a9771948SGleb Smirnoff { 1296a9771948SGleb Smirnoff struct ifnet *ifp; 1297a9771948SGleb Smirnoff struct carp_if *cif; 1298a9771948SGleb Smirnoff struct in_ifaddr *ia, *ia_if; 1299a9771948SGleb Smirnoff struct ip_moptions *imo = &sc->sc_imo; 1300a9771948SGleb Smirnoff struct in_addr addr; 1301a9771948SGleb Smirnoff u_long iaddr = htonl(sin->sin_addr.s_addr); 1302a9771948SGleb Smirnoff int own, error; 1303a9771948SGleb Smirnoff 1304a9771948SGleb Smirnoff if (sin->sin_addr.s_addr == 0) { 1305a9771948SGleb Smirnoff if (!(sc->sc_if.if_flags & IFF_UP)) 1306a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1307a9771948SGleb Smirnoff if (sc->sc_naddrs) 1308a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1309a9771948SGleb Smirnoff carp_setrun(sc, 0); 1310a9771948SGleb Smirnoff return (0); 1311a9771948SGleb Smirnoff } 1312a9771948SGleb Smirnoff 1313a9771948SGleb Smirnoff /* we have to do it by hands to check we won't match on us */ 1314a9771948SGleb Smirnoff ia_if = NULL; own = 0; 1315a9771948SGleb Smirnoff TAILQ_FOREACH(ia, &in_ifaddrhead, ia_link) { 1316a9771948SGleb Smirnoff /* and, yeah, we need a multicast-capable iface too */ 1317a9771948SGleb Smirnoff if (ia->ia_ifp != &sc->sc_if && 1318a9771948SGleb Smirnoff (ia->ia_ifp->if_flags & IFF_MULTICAST) && 1319a9771948SGleb Smirnoff (iaddr & ia->ia_subnetmask) == ia->ia_subnet) { 1320a9771948SGleb Smirnoff if (!ia_if) 1321a9771948SGleb Smirnoff ia_if = ia; 1322a9771948SGleb Smirnoff if (sin->sin_addr.s_addr == 1323a9771948SGleb Smirnoff ia->ia_addr.sin_addr.s_addr) 1324a9771948SGleb Smirnoff own++; 1325a9771948SGleb Smirnoff } 1326a9771948SGleb Smirnoff } 1327a9771948SGleb Smirnoff 1328a9771948SGleb Smirnoff if (!ia_if) 1329a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1330a9771948SGleb Smirnoff 1331a9771948SGleb Smirnoff ia = ia_if; 1332a9771948SGleb Smirnoff ifp = ia->ia_ifp; 1333a9771948SGleb Smirnoff 1334a9771948SGleb Smirnoff if (ifp == NULL || (ifp->if_flags & IFF_MULTICAST) == 0 || 1335a9771948SGleb Smirnoff (imo->imo_multicast_ifp && imo->imo_multicast_ifp != ifp)) 1336a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1337a9771948SGleb Smirnoff 1338a9771948SGleb Smirnoff if (imo->imo_num_memberships == 0) { 1339a9771948SGleb Smirnoff addr.s_addr = htonl(INADDR_CARP_GROUP); 1340a9771948SGleb Smirnoff if ((imo->imo_membership[0] = in_addmulti(&addr, ifp)) == NULL) 1341a9771948SGleb Smirnoff return (ENOBUFS); 1342a9771948SGleb Smirnoff imo->imo_num_memberships++; 1343a9771948SGleb Smirnoff imo->imo_multicast_ifp = ifp; 1344a9771948SGleb Smirnoff imo->imo_multicast_ttl = CARP_DFLTTL; 1345a9771948SGleb Smirnoff imo->imo_multicast_loop = 0; 1346a9771948SGleb Smirnoff } 1347a9771948SGleb Smirnoff 1348a9771948SGleb Smirnoff if (!ifp->if_carp) { 1349a9771948SGleb Smirnoff 1350a9771948SGleb Smirnoff MALLOC(cif, struct carp_if *, sizeof(*cif), M_CARP, 1351a9771948SGleb Smirnoff M_WAITOK|M_ZERO); 1352a9771948SGleb Smirnoff if (!cif) { 1353a9771948SGleb Smirnoff error = ENOBUFS; 1354a9771948SGleb Smirnoff goto cleanup; 1355a9771948SGleb Smirnoff } 1356a9771948SGleb Smirnoff if ((error = ifpromisc(ifp, 1))) { 1357a9771948SGleb Smirnoff FREE(cif, M_CARP); 1358a9771948SGleb Smirnoff goto cleanup; 1359a9771948SGleb Smirnoff } 1360a9771948SGleb Smirnoff 1361a9771948SGleb Smirnoff CARP_LOCK_INIT(cif); 1362a9771948SGleb Smirnoff CARP_LOCK(cif); 1363a9771948SGleb Smirnoff cif->vhif_ifp = ifp; 1364a9771948SGleb Smirnoff TAILQ_INIT(&cif->vhif_vrs); 1365a9771948SGleb Smirnoff ifp->if_carp = cif; 1366a9771948SGleb Smirnoff 1367a9771948SGleb Smirnoff } else { 1368a9771948SGleb Smirnoff struct carp_softc *vr; 1369a9771948SGleb Smirnoff 1370a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1371a9771948SGleb Smirnoff CARP_LOCK(cif); 1372a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) 1373a9771948SGleb Smirnoff if (vr != sc && vr->sc_vhid == sc->sc_vhid) { 1374a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1375a9771948SGleb Smirnoff error = EINVAL; 1376a9771948SGleb Smirnoff goto cleanup; 1377a9771948SGleb Smirnoff } 1378a9771948SGleb Smirnoff } 1379a9771948SGleb Smirnoff sc->sc_ia = ia; 1380e8c34a71SGleb Smirnoff sc->sc_carpdev = ifp; 1381a9771948SGleb Smirnoff 1382a9771948SGleb Smirnoff { /* XXX prevent endless loop if already in queue */ 1383a9771948SGleb Smirnoff struct carp_softc *vr, *after = NULL; 1384a9771948SGleb Smirnoff int myself = 0; 1385a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1386a9771948SGleb Smirnoff 1387a9771948SGleb Smirnoff /* XXX: cif should not change, right? So we still hold the lock */ 1388a9771948SGleb Smirnoff CARP_LOCK_ASSERT(cif); 1389a9771948SGleb Smirnoff 1390a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) { 1391a9771948SGleb Smirnoff if (vr == sc) 1392a9771948SGleb Smirnoff myself = 1; 1393a9771948SGleb Smirnoff if (vr->sc_vhid < sc->sc_vhid) 1394a9771948SGleb Smirnoff after = vr; 1395a9771948SGleb Smirnoff } 1396a9771948SGleb Smirnoff 1397a9771948SGleb Smirnoff if (!myself) { 1398a9771948SGleb Smirnoff /* We're trying to keep things in order */ 1399a9771948SGleb Smirnoff if (after == NULL) { 1400a9771948SGleb Smirnoff TAILQ_INSERT_TAIL(&cif->vhif_vrs, sc, sc_list); 1401a9771948SGleb Smirnoff } else { 1402a9771948SGleb Smirnoff TAILQ_INSERT_AFTER(&cif->vhif_vrs, after, sc, sc_list); 1403a9771948SGleb Smirnoff } 1404a9771948SGleb Smirnoff cif->vhif_nvrs++; 1405a9771948SGleb Smirnoff } 1406a9771948SGleb Smirnoff } 1407a9771948SGleb Smirnoff 1408a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1409a9771948SGleb Smirnoff 1410a9771948SGleb Smirnoff sc->sc_naddrs++; 1411a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1412a9771948SGleb Smirnoff if (own) 1413a9771948SGleb Smirnoff sc->sc_advskew = 0; 14146fba4c0bSGleb Smirnoff carp_carpdev_state(cif); 1415a9771948SGleb Smirnoff carp_setrun(sc, 0); 1416a9771948SGleb Smirnoff 1417a9771948SGleb Smirnoff return (0); 1418a9771948SGleb Smirnoff 1419a9771948SGleb Smirnoff cleanup: 1420a9771948SGleb Smirnoff in_delmulti(imo->imo_membership[--imo->imo_num_memberships]); 1421a9771948SGleb Smirnoff return (error); 1422a9771948SGleb Smirnoff } 1423a9771948SGleb Smirnoff 14245c1f0f6dSGleb Smirnoff static int 1425a9771948SGleb Smirnoff carp_del_addr(struct carp_softc *sc, struct sockaddr_in *sin) 1426a9771948SGleb Smirnoff { 1427a9771948SGleb Smirnoff int error = 0; 1428a9771948SGleb Smirnoff 1429a9771948SGleb Smirnoff if (!--sc->sc_naddrs) { 1430e8c34a71SGleb Smirnoff struct carp_if *cif = (struct carp_if *)sc->sc_carpdev->if_carp; 1431a9771948SGleb Smirnoff struct ip_moptions *imo = &sc->sc_imo; 1432a9771948SGleb Smirnoff 1433a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1434a9771948SGleb Smirnoff sc->sc_if.if_flags &= ~(IFF_UP|IFF_RUNNING); 1435a9771948SGleb Smirnoff sc->sc_vhid = -1; 1436a9771948SGleb Smirnoff in_delmulti(imo->imo_membership[--imo->imo_num_memberships]); 1437a9771948SGleb Smirnoff imo->imo_multicast_ifp = NULL; 1438a9771948SGleb Smirnoff CARP_LOCK(cif); 1439a9771948SGleb Smirnoff TAILQ_REMOVE(&cif->vhif_vrs, sc, sc_list); 1440a9771948SGleb Smirnoff if (!--cif->vhif_nvrs) { 1441e8c34a71SGleb Smirnoff sc->sc_carpdev->if_carp = NULL; 1442a9771948SGleb Smirnoff CARP_LOCK_DESTROY(cif); 1443a9771948SGleb Smirnoff FREE(cif, M_IFADDR); 1444a9771948SGleb Smirnoff } else { 1445a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1446a9771948SGleb Smirnoff } 1447a9771948SGleb Smirnoff } 1448a9771948SGleb Smirnoff 1449a9771948SGleb Smirnoff return (error); 1450a9771948SGleb Smirnoff } 1451a9771948SGleb Smirnoff 1452a9771948SGleb Smirnoff #ifdef INET6 14535c1f0f6dSGleb Smirnoff static int 1454a9771948SGleb Smirnoff carp_set_addr6(struct carp_softc *sc, struct sockaddr_in6 *sin6) 1455a9771948SGleb Smirnoff { 1456a9771948SGleb Smirnoff struct ifnet *ifp; 1457a9771948SGleb Smirnoff struct carp_if *cif; 1458a9771948SGleb Smirnoff struct in6_ifaddr *ia, *ia_if; 1459a9771948SGleb Smirnoff struct ip6_moptions *im6o = &sc->sc_im6o; 1460a9771948SGleb Smirnoff struct in6_multi_mship *imm; 1461a9771948SGleb Smirnoff struct sockaddr_in6 addr; 1462a9771948SGleb Smirnoff int own, error; 1463a9771948SGleb Smirnoff 1464a9771948SGleb Smirnoff if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 1465a9771948SGleb Smirnoff if (!(sc->sc_if.if_flags & IFF_UP)) 1466a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1467a9771948SGleb Smirnoff if (sc->sc_naddrs6) 1468a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1469a9771948SGleb Smirnoff carp_setrun(sc, 0); 1470a9771948SGleb Smirnoff return (0); 1471a9771948SGleb Smirnoff } 1472a9771948SGleb Smirnoff 1473a9771948SGleb Smirnoff /* we have to do it by hands to check we won't match on us */ 1474a9771948SGleb Smirnoff ia_if = NULL; own = 0; 1475a9771948SGleb Smirnoff for (ia = in6_ifaddr; ia; ia = ia->ia_next) { 1476a9771948SGleb Smirnoff int i; 1477a9771948SGleb Smirnoff 1478a9771948SGleb Smirnoff for (i = 0; i < 4; i++) { 1479a9771948SGleb Smirnoff if ((sin6->sin6_addr.s6_addr32[i] & 1480a9771948SGleb Smirnoff ia->ia_prefixmask.sin6_addr.s6_addr32[i]) != 1481a9771948SGleb Smirnoff (ia->ia_addr.sin6_addr.s6_addr32[i] & 1482a9771948SGleb Smirnoff ia->ia_prefixmask.sin6_addr.s6_addr32[i])) 1483a9771948SGleb Smirnoff break; 1484a9771948SGleb Smirnoff } 1485a9771948SGleb Smirnoff /* and, yeah, we need a multicast-capable iface too */ 1486a9771948SGleb Smirnoff if (ia->ia_ifp != &sc->sc_ac.ac_if && 1487a9771948SGleb Smirnoff (ia->ia_ifp->if_flags & IFF_MULTICAST) && 1488a9771948SGleb Smirnoff (i == 4)) { 1489a9771948SGleb Smirnoff if (!ia_if) 1490a9771948SGleb Smirnoff ia_if = ia; 1491a9771948SGleb Smirnoff if (IN6_ARE_ADDR_EQUAL(&sin6->sin6_addr, 1492a9771948SGleb Smirnoff &ia->ia_addr.sin6_addr)) 1493a9771948SGleb Smirnoff own++; 1494a9771948SGleb Smirnoff } 1495a9771948SGleb Smirnoff } 1496a9771948SGleb Smirnoff 1497a9771948SGleb Smirnoff if (!ia_if) 1498a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1499a9771948SGleb Smirnoff ia = ia_if; 1500a9771948SGleb Smirnoff ifp = ia->ia_ifp; 1501a9771948SGleb Smirnoff 1502a9771948SGleb Smirnoff if (ifp == NULL || (ifp->if_flags & IFF_MULTICAST) == 0 || 1503a9771948SGleb Smirnoff (im6o->im6o_multicast_ifp && im6o->im6o_multicast_ifp != ifp)) 1504a9771948SGleb Smirnoff return (EADDRNOTAVAIL); 1505a9771948SGleb Smirnoff 1506a9771948SGleb Smirnoff if (!sc->sc_naddrs6) { 1507a9771948SGleb Smirnoff im6o->im6o_multicast_ifp = ifp; 1508a9771948SGleb Smirnoff 1509a9771948SGleb Smirnoff /* join CARP multicast address */ 1510a9771948SGleb Smirnoff bzero(&addr, sizeof(addr)); 1511a9771948SGleb Smirnoff addr.sin6_family = AF_INET6; 1512a9771948SGleb Smirnoff addr.sin6_len = sizeof(addr); 1513a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[0] = htons(0xff02); 1514a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[1] = htons(ifp->if_index); 1515a9771948SGleb Smirnoff addr.sin6_addr.s6_addr8[15] = 0x12; 1516a9771948SGleb Smirnoff if ((imm = in6_joingroup(ifp, &addr.sin6_addr, &error)) == NULL) 1517a9771948SGleb Smirnoff goto cleanup; 1518a9771948SGleb Smirnoff LIST_INSERT_HEAD(&im6o->im6o_memberships, imm, i6mm_chain); 1519a9771948SGleb Smirnoff 1520a9771948SGleb Smirnoff /* join solicited multicast address */ 1521a9771948SGleb Smirnoff bzero(&addr.sin6_addr, sizeof(addr.sin6_addr)); 1522a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[0] = htons(0xff02); 1523a9771948SGleb Smirnoff addr.sin6_addr.s6_addr16[1] = htons(ifp->if_index); 1524a9771948SGleb Smirnoff addr.sin6_addr.s6_addr32[1] = 0; 1525a9771948SGleb Smirnoff addr.sin6_addr.s6_addr32[2] = htonl(1); 1526a9771948SGleb Smirnoff addr.sin6_addr.s6_addr32[3] = sin6->sin6_addr.s6_addr32[3]; 1527a9771948SGleb Smirnoff addr.sin6_addr.s6_addr8[12] = 0xff; 1528a9771948SGleb Smirnoff if ((imm = in6_joingroup(ifp, &addr.sin6_addr, &error)) == NULL) 1529a9771948SGleb Smirnoff goto cleanup; 1530a9771948SGleb Smirnoff LIST_INSERT_HEAD(&im6o->im6o_memberships, imm, i6mm_chain); 1531a9771948SGleb Smirnoff } 1532a9771948SGleb Smirnoff 1533a9771948SGleb Smirnoff if (!ifp->if_carp) { 1534a9771948SGleb Smirnoff MALLOC(cif, struct carp_if *, sizeof(*cif), M_CARP, 1535a9771948SGleb Smirnoff M_WAITOK|M_ZERO); 1536a9771948SGleb Smirnoff if (!cif) { 1537a9771948SGleb Smirnoff error = ENOBUFS; 1538a9771948SGleb Smirnoff goto cleanup; 1539a9771948SGleb Smirnoff } 1540a9771948SGleb Smirnoff if ((error = ifpromisc(ifp, 1))) { 1541a9771948SGleb Smirnoff FREE(cif, M_CARP); 1542a9771948SGleb Smirnoff goto cleanup; 1543a9771948SGleb Smirnoff } 1544a9771948SGleb Smirnoff 1545a9771948SGleb Smirnoff CARP_LOCK_INIT(cif); 1546a9771948SGleb Smirnoff CARP_LOCK(cif); 1547a9771948SGleb Smirnoff cif->vhif_ifp = ifp; 1548a9771948SGleb Smirnoff TAILQ_INIT(&cif->vhif_vrs); 1549a9771948SGleb Smirnoff ifp->if_carp = cif; 1550a9771948SGleb Smirnoff 1551a9771948SGleb Smirnoff } else { 1552a9771948SGleb Smirnoff struct carp_softc *vr; 1553a9771948SGleb Smirnoff 1554a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1555a9771948SGleb Smirnoff CARP_LOCK(cif); 1556a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) 1557a9771948SGleb Smirnoff if (vr != sc && vr->sc_vhid == sc->sc_vhid) { 1558a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1559a9771948SGleb Smirnoff error = EINVAL; 1560a9771948SGleb Smirnoff goto cleanup; 1561a9771948SGleb Smirnoff } 1562a9771948SGleb Smirnoff } 1563a9771948SGleb Smirnoff sc->sc_ia6 = ia; 1564e8c34a71SGleb Smirnoff sc->sc_carpdev = ifp; 1565a9771948SGleb Smirnoff 1566a9771948SGleb Smirnoff { /* XXX prevent endless loop if already in queue */ 1567a9771948SGleb Smirnoff struct carp_softc *vr, *after = NULL; 1568a9771948SGleb Smirnoff int myself = 0; 1569a9771948SGleb Smirnoff cif = (struct carp_if *)ifp->if_carp; 1570a9771948SGleb Smirnoff CARP_LOCK_ASSERT(cif); 1571a9771948SGleb Smirnoff 1572a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) { 1573a9771948SGleb Smirnoff if (vr == sc) 1574a9771948SGleb Smirnoff myself = 1; 1575a9771948SGleb Smirnoff if (vr->sc_vhid < sc->sc_vhid) 1576a9771948SGleb Smirnoff after = vr; 1577a9771948SGleb Smirnoff } 1578a9771948SGleb Smirnoff 1579a9771948SGleb Smirnoff if (!myself) { 1580a9771948SGleb Smirnoff /* We're trying to keep things in order */ 1581a9771948SGleb Smirnoff if (after == NULL) { 1582a9771948SGleb Smirnoff TAILQ_INSERT_TAIL(&cif->vhif_vrs, sc, sc_list); 1583a9771948SGleb Smirnoff } else { 1584a9771948SGleb Smirnoff TAILQ_INSERT_AFTER(&cif->vhif_vrs, after, sc, sc_list); 1585a9771948SGleb Smirnoff } 1586a9771948SGleb Smirnoff cif->vhif_nvrs++; 1587a9771948SGleb Smirnoff } 1588a9771948SGleb Smirnoff } 1589a9771948SGleb Smirnoff 1590a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1591a9771948SGleb Smirnoff sc->sc_naddrs6++; 1592a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_flags |= IFF_UP; 1593a9771948SGleb Smirnoff if (own) 1594a9771948SGleb Smirnoff sc->sc_advskew = 0; 159539aeaa0eSGleb Smirnoff carp_carpdev_state(cif); 1596a9771948SGleb Smirnoff carp_setrun(sc, 0); 1597a9771948SGleb Smirnoff 1598a9771948SGleb Smirnoff return (0); 1599a9771948SGleb Smirnoff 1600a9771948SGleb Smirnoff cleanup: 1601a9771948SGleb Smirnoff /* clean up multicast memberships */ 1602a9771948SGleb Smirnoff if (!sc->sc_naddrs6) { 1603a9771948SGleb Smirnoff while (!LIST_EMPTY(&im6o->im6o_memberships)) { 1604a9771948SGleb Smirnoff imm = LIST_FIRST(&im6o->im6o_memberships); 1605a9771948SGleb Smirnoff LIST_REMOVE(imm, i6mm_chain); 1606a9771948SGleb Smirnoff in6_leavegroup(imm); 1607a9771948SGleb Smirnoff } 1608a9771948SGleb Smirnoff } 1609a9771948SGleb Smirnoff return (error); 1610a9771948SGleb Smirnoff } 1611a9771948SGleb Smirnoff 16125c1f0f6dSGleb Smirnoff static int 1613a9771948SGleb Smirnoff carp_del_addr6(struct carp_softc *sc, struct sockaddr_in6 *sin6) 1614a9771948SGleb Smirnoff { 1615a9771948SGleb Smirnoff int error = 0; 1616a9771948SGleb Smirnoff 1617a9771948SGleb Smirnoff if (!--sc->sc_naddrs6) { 1618e8c34a71SGleb Smirnoff struct carp_if *cif = (struct carp_if *)sc->sc_carpdev->if_carp; 1619a9771948SGleb Smirnoff struct ip6_moptions *im6o = &sc->sc_im6o; 1620a9771948SGleb Smirnoff 1621a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1622a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_flags &= ~(IFF_UP|IFF_RUNNING); 1623a9771948SGleb Smirnoff sc->sc_vhid = -1; 1624a9771948SGleb Smirnoff CARP_LOCK(cif); 1625a9771948SGleb Smirnoff while (!LIST_EMPTY(&im6o->im6o_memberships)) { 1626a9771948SGleb Smirnoff struct in6_multi_mship *imm = 1627a9771948SGleb Smirnoff LIST_FIRST(&im6o->im6o_memberships); 1628a9771948SGleb Smirnoff 1629a9771948SGleb Smirnoff LIST_REMOVE(imm, i6mm_chain); 1630a9771948SGleb Smirnoff in6_leavegroup(imm); 1631a9771948SGleb Smirnoff } 1632a9771948SGleb Smirnoff im6o->im6o_multicast_ifp = NULL; 1633a9771948SGleb Smirnoff TAILQ_REMOVE(&cif->vhif_vrs, sc, sc_list); 1634a9771948SGleb Smirnoff if (!--cif->vhif_nvrs) { 1635a9771948SGleb Smirnoff CARP_LOCK_DESTROY(cif); 1636e8c34a71SGleb Smirnoff sc->sc_carpdev->if_carp = NULL; 1637a9771948SGleb Smirnoff FREE(cif, M_IFADDR); 1638a9771948SGleb Smirnoff } else 1639a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1640a9771948SGleb Smirnoff } 1641a9771948SGleb Smirnoff 1642a9771948SGleb Smirnoff return (error); 1643a9771948SGleb Smirnoff } 1644a9771948SGleb Smirnoff #endif /* INET6 */ 1645a9771948SGleb Smirnoff 16465c1f0f6dSGleb Smirnoff static int 1647a9771948SGleb Smirnoff carp_ioctl(struct ifnet *ifp, u_long cmd, caddr_t addr) 1648a9771948SGleb Smirnoff { 1649a9771948SGleb Smirnoff struct carp_softc *sc = ifp->if_softc, *vr; 1650a9771948SGleb Smirnoff struct carpreq carpr; 1651a9771948SGleb Smirnoff struct ifaddr *ifa; 1652a9771948SGleb Smirnoff struct ifreq *ifr; 1653a9771948SGleb Smirnoff struct ifaliasreq *ifra; 1654a9771948SGleb Smirnoff int error = 0; 1655a9771948SGleb Smirnoff 1656a9771948SGleb Smirnoff ifa = (struct ifaddr *)addr; 1657a9771948SGleb Smirnoff ifra = (struct ifaliasreq *)addr; 1658a9771948SGleb Smirnoff ifr = (struct ifreq *)addr; 1659a9771948SGleb Smirnoff 1660a9771948SGleb Smirnoff switch (cmd) { 1661a9771948SGleb Smirnoff case SIOCSIFADDR: 1662a9771948SGleb Smirnoff switch (ifa->ifa_addr->sa_family) { 1663a9771948SGleb Smirnoff #ifdef INET 1664a9771948SGleb Smirnoff case AF_INET: 1665a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1666a9771948SGleb Smirnoff bcopy(ifa->ifa_addr, ifa->ifa_dstaddr, 1667a9771948SGleb Smirnoff sizeof(struct sockaddr)); 1668a9771948SGleb Smirnoff error = carp_set_addr(sc, satosin(ifa->ifa_addr)); 1669a9771948SGleb Smirnoff break; 1670a9771948SGleb Smirnoff #endif /* INET */ 1671a9771948SGleb Smirnoff #ifdef INET6 1672a9771948SGleb Smirnoff case AF_INET6: 1673a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1674a9771948SGleb Smirnoff error = carp_set_addr6(sc, satosin6(ifa->ifa_addr)); 1675a9771948SGleb Smirnoff break; 1676a9771948SGleb Smirnoff #endif /* INET6 */ 1677a9771948SGleb Smirnoff default: 1678a9771948SGleb Smirnoff error = EAFNOSUPPORT; 1679a9771948SGleb Smirnoff break; 1680a9771948SGleb Smirnoff } 1681a9771948SGleb Smirnoff break; 1682a9771948SGleb Smirnoff 1683a9771948SGleb Smirnoff case SIOCAIFADDR: 1684a9771948SGleb Smirnoff switch (ifa->ifa_addr->sa_family) { 1685a9771948SGleb Smirnoff #ifdef INET 1686a9771948SGleb Smirnoff case AF_INET: 1687a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1688a9771948SGleb Smirnoff bcopy(ifa->ifa_addr, ifa->ifa_dstaddr, 1689a9771948SGleb Smirnoff sizeof(struct sockaddr)); 1690a9771948SGleb Smirnoff error = carp_set_addr(sc, satosin(&ifra->ifra_addr)); 1691a9771948SGleb Smirnoff break; 1692a9771948SGleb Smirnoff #endif /* INET */ 1693a9771948SGleb Smirnoff #ifdef INET6 1694a9771948SGleb Smirnoff case AF_INET6: 1695a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1696a9771948SGleb Smirnoff error = carp_set_addr6(sc, satosin6(&ifra->ifra_addr)); 1697a9771948SGleb Smirnoff break; 1698a9771948SGleb Smirnoff #endif /* INET6 */ 1699a9771948SGleb Smirnoff default: 1700a9771948SGleb Smirnoff error = EAFNOSUPPORT; 1701a9771948SGleb Smirnoff break; 1702a9771948SGleb Smirnoff } 1703a9771948SGleb Smirnoff break; 1704a9771948SGleb Smirnoff 1705a9771948SGleb Smirnoff case SIOCDIFADDR: 1706a9771948SGleb Smirnoff switch (ifa->ifa_addr->sa_family) { 1707a9771948SGleb Smirnoff #ifdef INET 1708a9771948SGleb Smirnoff case AF_INET: 1709a9771948SGleb Smirnoff error = carp_del_addr(sc, satosin(&ifra->ifra_addr)); 1710a9771948SGleb Smirnoff break; 1711a9771948SGleb Smirnoff #endif /* INET */ 1712a9771948SGleb Smirnoff #ifdef INET6 1713a9771948SGleb Smirnoff case AF_INET6: 1714a9771948SGleb Smirnoff error = carp_del_addr6(sc, satosin6(&ifra->ifra_addr)); 1715a9771948SGleb Smirnoff break; 1716a9771948SGleb Smirnoff #endif /* INET6 */ 1717a9771948SGleb Smirnoff default: 1718a9771948SGleb Smirnoff error = EAFNOSUPPORT; 1719a9771948SGleb Smirnoff break; 1720a9771948SGleb Smirnoff } 1721a9771948SGleb Smirnoff break; 1722a9771948SGleb Smirnoff 1723a9771948SGleb Smirnoff case SIOCSIFFLAGS: 1724a9771948SGleb Smirnoff if (sc->sc_state != INIT && !(ifr->ifr_flags & IFF_UP)) { 1725a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1726a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 1727a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 1728a9771948SGleb Smirnoff if (sc->sc_state == MASTER) 1729a9771948SGleb Smirnoff carp_send_ad(sc); 1730a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1731a9771948SGleb Smirnoff carp_setrun(sc, 0); 1732a9771948SGleb Smirnoff } else if (sc->sc_state == INIT && (ifr->ifr_flags & IFF_UP)) { 1733a9771948SGleb Smirnoff sc->sc_if.if_flags |= IFF_UP; 1734a9771948SGleb Smirnoff carp_setrun(sc, 0); 1735a9771948SGleb Smirnoff } 1736a9771948SGleb Smirnoff break; 1737a9771948SGleb Smirnoff 1738a9771948SGleb Smirnoff case SIOCSVH: 1739a9771948SGleb Smirnoff if ((error = suser(curthread)) != 0) 1740a9771948SGleb Smirnoff break; 1741a9771948SGleb Smirnoff if ((error = copyin(ifr->ifr_data, &carpr, sizeof carpr))) 1742a9771948SGleb Smirnoff break; 1743a9771948SGleb Smirnoff error = 1; 1744a9771948SGleb Smirnoff if (sc->sc_state != INIT && carpr.carpr_state != sc->sc_state) { 1745a9771948SGleb Smirnoff switch (carpr.carpr_state) { 1746a9771948SGleb Smirnoff case BACKUP: 1747a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1748a9771948SGleb Smirnoff carp_set_state(sc, BACKUP); 1749a9771948SGleb Smirnoff carp_setrun(sc, 0); 1750a9771948SGleb Smirnoff carp_setroute(sc, RTM_DELETE); 1751a9771948SGleb Smirnoff break; 1752a9771948SGleb Smirnoff case MASTER: 1753a9771948SGleb Smirnoff carp_master_down(sc); 1754a9771948SGleb Smirnoff break; 1755a9771948SGleb Smirnoff default: 1756a9771948SGleb Smirnoff break; 1757a9771948SGleb Smirnoff } 1758a9771948SGleb Smirnoff } 1759a9771948SGleb Smirnoff if (carpr.carpr_vhid > 0) { 1760a9771948SGleb Smirnoff if (carpr.carpr_vhid > 255) { 1761a9771948SGleb Smirnoff error = EINVAL; 1762a9771948SGleb Smirnoff break; 1763a9771948SGleb Smirnoff } 1764e8c34a71SGleb Smirnoff if (sc->sc_carpdev) { 1765a9771948SGleb Smirnoff struct carp_if *cif; 1766e8c34a71SGleb Smirnoff cif = (struct carp_if *)sc->sc_carpdev->if_carp; 1767a9771948SGleb Smirnoff CARP_LOCK(cif); 1768a9771948SGleb Smirnoff TAILQ_FOREACH(vr, &cif->vhif_vrs, sc_list) 1769a9771948SGleb Smirnoff if (vr != sc && 1770a9771948SGleb Smirnoff vr->sc_vhid == carpr.carpr_vhid) { 1771a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1772a9771948SGleb Smirnoff return EINVAL; 1773a9771948SGleb Smirnoff } 1774a9771948SGleb Smirnoff CARP_UNLOCK(cif); 1775a9771948SGleb Smirnoff } 1776a9771948SGleb Smirnoff sc->sc_vhid = carpr.carpr_vhid; 1777a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[0] = 0; 1778a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[1] = 0; 1779a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[2] = 0x5e; 1780a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[3] = 0; 1781a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[4] = 1; 1782a9771948SGleb Smirnoff sc->sc_ac.ac_enaddr[5] = sc->sc_vhid; 1783a9771948SGleb Smirnoff error--; 1784a9771948SGleb Smirnoff } 1785a9771948SGleb Smirnoff if (carpr.carpr_advbase > 0 || carpr.carpr_advskew > 0) { 1786a9771948SGleb Smirnoff if (carpr.carpr_advskew >= 255) { 1787a9771948SGleb Smirnoff error = EINVAL; 1788a9771948SGleb Smirnoff break; 1789a9771948SGleb Smirnoff } 1790a9771948SGleb Smirnoff if (carpr.carpr_advbase > 255) { 1791a9771948SGleb Smirnoff error = EINVAL; 1792a9771948SGleb Smirnoff break; 1793a9771948SGleb Smirnoff } 1794a9771948SGleb Smirnoff sc->sc_advbase = carpr.carpr_advbase; 1795a9771948SGleb Smirnoff sc->sc_advskew = carpr.carpr_advskew; 1796a9771948SGleb Smirnoff error--; 1797a9771948SGleb Smirnoff } 1798a9771948SGleb Smirnoff bcopy(carpr.carpr_key, sc->sc_key, sizeof(sc->sc_key)); 1799a9771948SGleb Smirnoff if (error > 0) 1800a9771948SGleb Smirnoff error = EINVAL; 1801a9771948SGleb Smirnoff else { 1802a9771948SGleb Smirnoff error = 0; 1803a9771948SGleb Smirnoff carp_setrun(sc, 0); 1804a9771948SGleb Smirnoff } 1805a9771948SGleb Smirnoff break; 1806a9771948SGleb Smirnoff 1807a9771948SGleb Smirnoff case SIOCGVH: 1808a9771948SGleb Smirnoff bzero(&carpr, sizeof(carpr)); 1809a9771948SGleb Smirnoff carpr.carpr_state = sc->sc_state; 1810a9771948SGleb Smirnoff carpr.carpr_vhid = sc->sc_vhid; 1811a9771948SGleb Smirnoff carpr.carpr_advbase = sc->sc_advbase; 1812a9771948SGleb Smirnoff carpr.carpr_advskew = sc->sc_advskew; 1813a9771948SGleb Smirnoff if (suser(curthread) == 0) 1814a9771948SGleb Smirnoff bcopy(sc->sc_key, carpr.carpr_key, 1815a9771948SGleb Smirnoff sizeof(carpr.carpr_key)); 1816a9771948SGleb Smirnoff error = copyout(&carpr, ifr->ifr_data, sizeof(carpr)); 1817a9771948SGleb Smirnoff break; 1818a9771948SGleb Smirnoff 1819a9771948SGleb Smirnoff default: 1820a9771948SGleb Smirnoff error = EINVAL; 1821a9771948SGleb Smirnoff } 1822a9771948SGleb Smirnoff 1823a9771948SGleb Smirnoff carp_hmac_prepare(sc); 1824a9771948SGleb Smirnoff return (error); 1825a9771948SGleb Smirnoff } 1826a9771948SGleb Smirnoff 1827a9771948SGleb Smirnoff /* 1828a9771948SGleb Smirnoff * XXX: this is looutput. We should eventually use it from there. 1829a9771948SGleb Smirnoff */ 1830a9771948SGleb Smirnoff static int 1831a9771948SGleb Smirnoff carp_looutput(struct ifnet *ifp, struct mbuf *m, struct sockaddr *dst, 1832a9771948SGleb Smirnoff struct rtentry *rt) 1833a9771948SGleb Smirnoff { 1834a9771948SGleb Smirnoff M_ASSERTPKTHDR(m); /* check if we have the packet header */ 1835a9771948SGleb Smirnoff 1836a9771948SGleb Smirnoff if (rt && rt->rt_flags & (RTF_REJECT|RTF_BLACKHOLE)) { 1837a9771948SGleb Smirnoff m_freem(m); 1838a9771948SGleb Smirnoff return (rt->rt_flags & RTF_BLACKHOLE ? 0 : 1839a9771948SGleb Smirnoff rt->rt_flags & RTF_HOST ? EHOSTUNREACH : ENETUNREACH); 1840a9771948SGleb Smirnoff } 1841a9771948SGleb Smirnoff 1842a9771948SGleb Smirnoff ifp->if_opackets++; 1843a9771948SGleb Smirnoff ifp->if_obytes += m->m_pkthdr.len; 1844a9771948SGleb Smirnoff #if 1 /* XXX */ 1845a9771948SGleb Smirnoff switch (dst->sa_family) { 1846a9771948SGleb Smirnoff case AF_INET: 1847a9771948SGleb Smirnoff case AF_INET6: 1848a9771948SGleb Smirnoff case AF_IPX: 1849a9771948SGleb Smirnoff case AF_APPLETALK: 1850a9771948SGleb Smirnoff break; 1851a9771948SGleb Smirnoff default: 1852a9771948SGleb Smirnoff printf("carp_looutput: af=%d unexpected\n", dst->sa_family); 1853a9771948SGleb Smirnoff m_freem(m); 1854a9771948SGleb Smirnoff return (EAFNOSUPPORT); 1855a9771948SGleb Smirnoff } 1856a9771948SGleb Smirnoff #endif 1857a9771948SGleb Smirnoff return(if_simloop(ifp, m, dst->sa_family, 0)); 1858a9771948SGleb Smirnoff } 1859a9771948SGleb Smirnoff 1860a9771948SGleb Smirnoff /* 1861a9771948SGleb Smirnoff * Start output on carp interface. This function should never be called. 1862a9771948SGleb Smirnoff */ 18635c1f0f6dSGleb Smirnoff static void 1864a9771948SGleb Smirnoff carp_start(struct ifnet *ifp) 1865a9771948SGleb Smirnoff { 1866a9771948SGleb Smirnoff #ifdef DEBUG 1867a9771948SGleb Smirnoff printf("%s: start called\n", ifp->if_xname); 1868a9771948SGleb Smirnoff #endif 1869a9771948SGleb Smirnoff } 1870a9771948SGleb Smirnoff 1871a9771948SGleb Smirnoff int 1872a9771948SGleb Smirnoff carp_output(struct ifnet *ifp, struct mbuf *m, struct sockaddr *sa, 1873a9771948SGleb Smirnoff struct rtentry *rt) 1874a9771948SGleb Smirnoff { 1875a9771948SGleb Smirnoff struct m_tag *mtag; 1876a9771948SGleb Smirnoff struct carp_softc *sc; 1877a9771948SGleb Smirnoff struct ifnet *carp_ifp; 1878a9771948SGleb Smirnoff 1879a9771948SGleb Smirnoff if (!sa) 1880a9771948SGleb Smirnoff return (0); 1881a9771948SGleb Smirnoff 1882a9771948SGleb Smirnoff switch (sa->sa_family) { 1883a9771948SGleb Smirnoff #ifdef INET 1884a9771948SGleb Smirnoff case AF_INET: 1885a9771948SGleb Smirnoff break; 1886a9771948SGleb Smirnoff #endif /* INET */ 1887a9771948SGleb Smirnoff #ifdef INET6 1888a9771948SGleb Smirnoff case AF_INET6: 1889a9771948SGleb Smirnoff break; 1890a9771948SGleb Smirnoff #endif /* INET6 */ 1891a9771948SGleb Smirnoff default: 1892a9771948SGleb Smirnoff return (0); 1893a9771948SGleb Smirnoff } 1894a9771948SGleb Smirnoff 1895a9771948SGleb Smirnoff mtag = m_tag_find(m, PACKET_TAG_CARP, NULL); 1896a9771948SGleb Smirnoff if (mtag == NULL) 1897a9771948SGleb Smirnoff return (0); 1898a9771948SGleb Smirnoff 1899a9771948SGleb Smirnoff bcopy(mtag + 1, &carp_ifp, sizeof(struct ifnet *)); 1900a9771948SGleb Smirnoff sc = carp_ifp->if_softc; 1901a9771948SGleb Smirnoff 1902a9771948SGleb Smirnoff /* Set the source MAC address to Virtual Router MAC Address */ 1903a9771948SGleb Smirnoff switch (ifp->if_type) { 1904630481bbSYaroslav Tykhiy case IFT_ETHER: 1905630481bbSYaroslav Tykhiy case IFT_L2VLAN: { 1906a9771948SGleb Smirnoff struct ether_header *eh; 1907a9771948SGleb Smirnoff 1908a9771948SGleb Smirnoff eh = mtod(m, struct ether_header *); 1909a9771948SGleb Smirnoff eh->ether_shost[0] = 0; 1910a9771948SGleb Smirnoff eh->ether_shost[1] = 0; 1911a9771948SGleb Smirnoff eh->ether_shost[2] = 0x5e; 1912a9771948SGleb Smirnoff eh->ether_shost[3] = 0; 1913a9771948SGleb Smirnoff eh->ether_shost[4] = 1; 1914a9771948SGleb Smirnoff eh->ether_shost[5] = sc->sc_vhid; 1915a9771948SGleb Smirnoff } 1916a9771948SGleb Smirnoff break; 1917a9771948SGleb Smirnoff case IFT_FDDI: { 1918a9771948SGleb Smirnoff struct fddi_header *fh; 1919a9771948SGleb Smirnoff 1920a9771948SGleb Smirnoff fh = mtod(m, struct fddi_header *); 1921a9771948SGleb Smirnoff fh->fddi_shost[0] = 0; 1922a9771948SGleb Smirnoff fh->fddi_shost[1] = 0; 1923a9771948SGleb Smirnoff fh->fddi_shost[2] = 0x5e; 1924a9771948SGleb Smirnoff fh->fddi_shost[3] = 0; 1925a9771948SGleb Smirnoff fh->fddi_shost[4] = 1; 1926a9771948SGleb Smirnoff fh->fddi_shost[5] = sc->sc_vhid; 1927a9771948SGleb Smirnoff } 1928a9771948SGleb Smirnoff break; 1929a9771948SGleb Smirnoff case IFT_ISO88025: { 1930a9771948SGleb Smirnoff struct iso88025_header *th; 1931a9771948SGleb Smirnoff th = mtod(m, struct iso88025_header *); 1932a9771948SGleb Smirnoff th->iso88025_shost[0] = 3; 1933a9771948SGleb Smirnoff th->iso88025_shost[1] = 0; 1934a9771948SGleb Smirnoff th->iso88025_shost[2] = 0x40 >> (sc->sc_vhid - 1); 1935a9771948SGleb Smirnoff th->iso88025_shost[3] = 0x40000 >> (sc->sc_vhid - 1); 1936a9771948SGleb Smirnoff th->iso88025_shost[4] = 0; 1937a9771948SGleb Smirnoff th->iso88025_shost[5] = 0; 1938a9771948SGleb Smirnoff } 1939a9771948SGleb Smirnoff break; 1940a9771948SGleb Smirnoff default: 1941a9771948SGleb Smirnoff printf("%s: carp is not supported for this interface type\n", 1942a9771948SGleb Smirnoff ifp->if_xname); 1943a9771948SGleb Smirnoff return (EOPNOTSUPP); 1944a9771948SGleb Smirnoff } 1945a9771948SGleb Smirnoff 1946a9771948SGleb Smirnoff return (0); 1947a9771948SGleb Smirnoff } 1948a9771948SGleb Smirnoff 19495c1f0f6dSGleb Smirnoff static void 1950a9771948SGleb Smirnoff carp_set_state(struct carp_softc *sc, int state) 1951a9771948SGleb Smirnoff { 1952a9771948SGleb Smirnoff if (sc->sc_state == state) 1953a9771948SGleb Smirnoff return; 1954a9771948SGleb Smirnoff 1955a9771948SGleb Smirnoff sc->sc_state = state; 1956a9771948SGleb Smirnoff switch (state) { 1957a9771948SGleb Smirnoff case BACKUP: 1958a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_link_state = LINK_STATE_DOWN; 1959a9771948SGleb Smirnoff break; 1960a9771948SGleb Smirnoff case MASTER: 1961a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_link_state = LINK_STATE_UP; 1962a9771948SGleb Smirnoff break; 1963a9771948SGleb Smirnoff default: 1964a9771948SGleb Smirnoff sc->sc_ac.ac_if.if_link_state = LINK_STATE_UNKNOWN; 1965a9771948SGleb Smirnoff break; 1966a9771948SGleb Smirnoff } 1967a9771948SGleb Smirnoff rt_ifmsg(&sc->sc_ac.ac_if); 1968a9771948SGleb Smirnoff } 1969a9771948SGleb Smirnoff 1970a9771948SGleb Smirnoff void 1971a9771948SGleb Smirnoff carp_carpdev_state(void *v) 1972a9771948SGleb Smirnoff { 1973a9771948SGleb Smirnoff struct carp_if *cif = v; 1974a9771948SGleb Smirnoff struct carp_softc *sc; 1975a9771948SGleb Smirnoff 1976a9771948SGleb Smirnoff CARP_LOCK(cif); 1977a9771948SGleb Smirnoff TAILQ_FOREACH(sc, &cif->vhif_vrs, sc_list) { 1978e8c34a71SGleb Smirnoff if (sc->sc_carpdev->if_link_state != LINK_STATE_UP || 1979e8c34a71SGleb Smirnoff !(sc->sc_carpdev->if_flags & IFF_UP)) { 1980a9771948SGleb Smirnoff sc->sc_flags_backup = sc->sc_if.if_flags; 1981a9771948SGleb Smirnoff sc->sc_if.if_flags &= ~(IFF_UP|IFF_RUNNING); 1982a9771948SGleb Smirnoff callout_stop(&sc->sc_ad_tmo); 1983a9771948SGleb Smirnoff callout_stop(&sc->sc_md_tmo); 1984a9771948SGleb Smirnoff callout_stop(&sc->sc_md6_tmo); 1985a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1986a9771948SGleb Smirnoff carp_setrun(sc, 0); 1987a9771948SGleb Smirnoff if (!sc->sc_suppress) { 1988a9771948SGleb Smirnoff carp_suppress_preempt++; 1989a9771948SGleb Smirnoff if (carp_suppress_preempt == 1) 1990a9771948SGleb Smirnoff carp_send_ad_all(); 1991a9771948SGleb Smirnoff } 1992a9771948SGleb Smirnoff sc->sc_suppress = 1; 1993a9771948SGleb Smirnoff } else { 1994a9771948SGleb Smirnoff sc->sc_if.if_flags |= sc->sc_flags_backup; 1995a9771948SGleb Smirnoff carp_set_state(sc, INIT); 1996a9771948SGleb Smirnoff carp_setrun(sc, 0); 1997a9771948SGleb Smirnoff if (sc->sc_suppress) 1998a9771948SGleb Smirnoff carp_suppress_preempt--; 1999a9771948SGleb Smirnoff sc->sc_suppress = 0; 2000a9771948SGleb Smirnoff } 2001a9771948SGleb Smirnoff } 2002a9771948SGleb Smirnoff CARP_UNLOCK(cif); 2003a9771948SGleb Smirnoff } 2004a9771948SGleb Smirnoff 2005a9771948SGleb Smirnoff static int 2006a9771948SGleb Smirnoff carp_modevent(module_t mod, int type, void *data) 2007a9771948SGleb Smirnoff { 2008a9771948SGleb Smirnoff int error = 0; 2009a9771948SGleb Smirnoff 2010a9771948SGleb Smirnoff switch (type) { 2011a9771948SGleb Smirnoff case MOD_LOAD: 2012d92d54d5SGleb Smirnoff mtx_init(&carp_mtx, "carp_mtx", NULL, MTX_DEF); 2013a9771948SGleb Smirnoff LIST_INIT(&carpif_list); 2014a9771948SGleb Smirnoff if_clone_attach(&carp_cloner); 2015a9771948SGleb Smirnoff break; 2016a9771948SGleb Smirnoff 2017a9771948SGleb Smirnoff case MOD_UNLOAD: 2018a9771948SGleb Smirnoff if_clone_detach(&carp_cloner); 2019a9771948SGleb Smirnoff while (!LIST_EMPTY(&carpif_list)) 2020d92d54d5SGleb Smirnoff carp_clone_destroy(&LIST_FIRST(&carpif_list)->sc_if); 2021d92d54d5SGleb Smirnoff mtx_destroy(&carp_mtx); 2022a9771948SGleb Smirnoff break; 2023a9771948SGleb Smirnoff 2024a9771948SGleb Smirnoff default: 2025a9771948SGleb Smirnoff error = EINVAL; 2026a9771948SGleb Smirnoff break; 2027a9771948SGleb Smirnoff } 2028a9771948SGleb Smirnoff 2029a9771948SGleb Smirnoff return error; 2030a9771948SGleb Smirnoff } 2031a9771948SGleb Smirnoff 2032a9771948SGleb Smirnoff static moduledata_t carp_mod = { 2033a9771948SGleb Smirnoff "carp", 2034a9771948SGleb Smirnoff carp_modevent, 2035a9771948SGleb Smirnoff 0 2036a9771948SGleb Smirnoff }; 2037a9771948SGleb Smirnoff 2038a9771948SGleb Smirnoff DECLARE_MODULE(carp, carp_mod, SI_SUB_PSEUDO, SI_ORDER_ANY); 2039