1f8829a4aSRandall Stewart /*- 2b1006367SRandall Stewart * Copyright (c) 2001-2007, by Cisco Systems, Inc. All rights reserved. 3f8829a4aSRandall Stewart * 4f8829a4aSRandall Stewart * Redistribution and use in source and binary forms, with or without 5f8829a4aSRandall Stewart * modification, are permitted provided that the following conditions are met: 6f8829a4aSRandall Stewart * 7f8829a4aSRandall Stewart * a) Redistributions of source code must retain the above copyright notice, 8f8829a4aSRandall Stewart * this list of conditions and the following disclaimer. 9f8829a4aSRandall Stewart * 10f8829a4aSRandall Stewart * b) Redistributions in binary form must reproduce the above copyright 11f8829a4aSRandall Stewart * notice, this list of conditions and the following disclaimer in 12f8829a4aSRandall Stewart * the documentation and/or other materials provided with the distribution. 13f8829a4aSRandall Stewart * 14f8829a4aSRandall Stewart * c) Neither the name of Cisco Systems, Inc. nor the names of its 15f8829a4aSRandall Stewart * contributors may be used to endorse or promote products derived 16f8829a4aSRandall Stewart * from this software without specific prior written permission. 17f8829a4aSRandall Stewart * 18f8829a4aSRandall Stewart * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS 19f8829a4aSRandall Stewart * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, 20f8829a4aSRandall Stewart * THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 21f8829a4aSRandall Stewart * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE 22f8829a4aSRandall Stewart * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 23f8829a4aSRandall Stewart * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 24f8829a4aSRandall Stewart * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 25f8829a4aSRandall Stewart * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 26f8829a4aSRandall Stewart * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 27f8829a4aSRandall Stewart * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF 28f8829a4aSRandall Stewart * THE POSSIBILITY OF SUCH DAMAGE. 29f8829a4aSRandall Stewart */ 30f8829a4aSRandall Stewart 31f8829a4aSRandall Stewart /* $KAME: sctp_asconf.c,v 1.24 2005/03/06 16:04:16 itojun Exp $ */ 32f8829a4aSRandall Stewart 33f8829a4aSRandall Stewart #include <sys/cdefs.h> 34cef8ad06SRandall Stewart __FBSDID("$FreeBSD$"); 35f8829a4aSRandall Stewart #include <netinet/sctp_os.h> 36f8829a4aSRandall Stewart #include <netinet/sctp_var.h> 3742551e99SRandall Stewart #include <netinet/sctp_sysctl.h> 38f8829a4aSRandall Stewart #include <netinet/sctp_pcb.h> 39f8829a4aSRandall Stewart #include <netinet/sctp_header.h> 40f8829a4aSRandall Stewart #include <netinet/sctputil.h> 41f8829a4aSRandall Stewart #include <netinet/sctp_output.h> 42f8829a4aSRandall Stewart #include <netinet/sctp_asconf.h> 43f8829a4aSRandall Stewart 44f8829a4aSRandall Stewart /* 45f8829a4aSRandall Stewart * debug flags: 46f8829a4aSRandall Stewart * SCTP_DEBUG_ASCONF1: protocol info, general info and errors 47f8829a4aSRandall Stewart * SCTP_DEBUG_ASCONF2: detailed info 48f8829a4aSRandall Stewart */ 49f8829a4aSRandall Stewart #ifdef SCTP_DEBUG 50f8829a4aSRandall Stewart #endif /* SCTP_DEBUG */ 51f8829a4aSRandall Stewart 52f8829a4aSRandall Stewart 53ad81507eSRandall Stewart static void 54f8829a4aSRandall Stewart sctp_asconf_get_source_ip(struct mbuf *m, struct sockaddr *sa) 55f8829a4aSRandall Stewart { 56f8829a4aSRandall Stewart struct ip *iph; 57f8829a4aSRandall Stewart struct sockaddr_in *sin; 58f8829a4aSRandall Stewart 59f8829a4aSRandall Stewart #ifdef INET6 60f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 61f8829a4aSRandall Stewart 62f8829a4aSRandall Stewart #endif 63f8829a4aSRandall Stewart 64f8829a4aSRandall Stewart iph = mtod(m, struct ip *); 65f8829a4aSRandall Stewart if (iph->ip_v == IPVERSION) { 66f8829a4aSRandall Stewart /* IPv4 source */ 67f8829a4aSRandall Stewart sin = (struct sockaddr_in *)sa; 68f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 69f8829a4aSRandall Stewart sin->sin_family = AF_INET; 70f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 71f8829a4aSRandall Stewart sin->sin_port = 0; 72f8829a4aSRandall Stewart sin->sin_addr.s_addr = iph->ip_src.s_addr; 73ad81507eSRandall Stewart return; 74f8829a4aSRandall Stewart } 75f8829a4aSRandall Stewart #ifdef INET6 76f8829a4aSRandall Stewart else if (iph->ip_v == (IPV6_VERSION >> 4)) { 77f8829a4aSRandall Stewart /* IPv6 source */ 78f8829a4aSRandall Stewart struct ip6_hdr *ip6; 79f8829a4aSRandall Stewart 80f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 81f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 82f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 83f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 84f8829a4aSRandall Stewart sin6->sin6_port = 0; 85f8829a4aSRandall Stewart ip6 = mtod(m, struct ip6_hdr *); 86f8829a4aSRandall Stewart sin6->sin6_addr = ip6->ip6_src; 87ad81507eSRandall Stewart return; 88f8829a4aSRandall Stewart } 89f8829a4aSRandall Stewart #endif /* INET6 */ 90f8829a4aSRandall Stewart else 91ad81507eSRandall Stewart return; 92f8829a4aSRandall Stewart } 93f8829a4aSRandall Stewart 94f8829a4aSRandall Stewart /* 95f8829a4aSRandall Stewart * draft-ietf-tsvwg-addip-sctp 96f8829a4aSRandall Stewart * 97f8829a4aSRandall Stewart * Address management only currently supported For the bound all case: the asoc 98f8829a4aSRandall Stewart * local addr list is always a "DO NOT USE" list For the subset bound case: 99f8829a4aSRandall Stewart * If ASCONFs are allowed: the endpoint local addr list is the usable address 100f8829a4aSRandall Stewart * list the asoc local addr list is the "DO NOT USE" list If ASCONFs are not 101f8829a4aSRandall Stewart * allowed: the endpoint local addr list is the default usable list the asoc 102f8829a4aSRandall Stewart * local addr list is the usable address list 103f8829a4aSRandall Stewart * 104f8829a4aSRandall Stewart * An ASCONF parameter queue exists per asoc which holds the pending address 105f8829a4aSRandall Stewart * operations. Lists are updated upon receipt of ASCONF-ACK. 106f8829a4aSRandall Stewart * 107f8829a4aSRandall Stewart * Deleted addresses are always immediately removed from the lists as they will 108f8829a4aSRandall Stewart * (shortly) no longer exist in the kernel. We send ASCONFs as a courtesy, 109f8829a4aSRandall Stewart * only if allowed. 110f8829a4aSRandall Stewart */ 111f8829a4aSRandall Stewart 112f8829a4aSRandall Stewart /* 113f8829a4aSRandall Stewart * ASCONF parameter processing response_required: set if a reply is required 114f8829a4aSRandall Stewart * (eg. SUCCESS_REPORT) returns a mbuf to an "error" response parameter or 115f8829a4aSRandall Stewart * NULL/"success" if ok FIX: allocating this many mbufs on the fly is pretty 116f8829a4aSRandall Stewart * inefficient... 117f8829a4aSRandall Stewart */ 118f8829a4aSRandall Stewart static struct mbuf * 119f8829a4aSRandall Stewart sctp_asconf_success_response(uint32_t id) 120f8829a4aSRandall Stewart { 121f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 122f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 123f8829a4aSRandall Stewart 124f8829a4aSRandall Stewart m_reply = sctp_get_mbuf_for_msg(sizeof(struct sctp_asconf_paramhdr), 125f8829a4aSRandall Stewart 0, M_DONTWAIT, 1, MT_DATA); 126f8829a4aSRandall Stewart if (m_reply == NULL) { 127ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 128ad81507eSRandall Stewart "asconf_success_response: couldn't get mbuf!\n"); 129f8829a4aSRandall Stewart return NULL; 130f8829a4aSRandall Stewart } 131f8829a4aSRandall Stewart aph = mtod(m_reply, struct sctp_asconf_paramhdr *); 132f8829a4aSRandall Stewart aph->correlation_id = id; 133f8829a4aSRandall Stewart aph->ph.param_type = htons(SCTP_SUCCESS_REPORT); 134f8829a4aSRandall Stewart aph->ph.param_length = sizeof(struct sctp_asconf_paramhdr); 135139bc87fSRandall Stewart SCTP_BUF_LEN(m_reply) = aph->ph.param_length; 136f8829a4aSRandall Stewart aph->ph.param_length = htons(aph->ph.param_length); 137f8829a4aSRandall Stewart 138f8829a4aSRandall Stewart return m_reply; 139f8829a4aSRandall Stewart } 140f8829a4aSRandall Stewart 141f8829a4aSRandall Stewart static struct mbuf * 142f8829a4aSRandall Stewart sctp_asconf_error_response(uint32_t id, uint16_t cause, uint8_t * error_tlv, 143f8829a4aSRandall Stewart uint16_t tlv_length) 144f8829a4aSRandall Stewart { 145f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 146f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 147f8829a4aSRandall Stewart struct sctp_error_cause *error; 148f8829a4aSRandall Stewart uint8_t *tlv; 149f8829a4aSRandall Stewart 150f8829a4aSRandall Stewart m_reply = sctp_get_mbuf_for_msg((sizeof(struct sctp_asconf_paramhdr) + 151f8829a4aSRandall Stewart tlv_length + 152f8829a4aSRandall Stewart sizeof(struct sctp_error_cause)), 153f8829a4aSRandall Stewart 0, M_DONTWAIT, 1, MT_DATA); 154f8829a4aSRandall Stewart if (m_reply == NULL) { 155ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 156ad81507eSRandall Stewart "asconf_error_response: couldn't get mbuf!\n"); 157f8829a4aSRandall Stewart return NULL; 158f8829a4aSRandall Stewart } 159f8829a4aSRandall Stewart aph = mtod(m_reply, struct sctp_asconf_paramhdr *); 160f8829a4aSRandall Stewart error = (struct sctp_error_cause *)(aph + 1); 161f8829a4aSRandall Stewart 162f8829a4aSRandall Stewart aph->correlation_id = id; 163f8829a4aSRandall Stewart aph->ph.param_type = htons(SCTP_ERROR_CAUSE_IND); 164f8829a4aSRandall Stewart error->code = htons(cause); 165f8829a4aSRandall Stewart error->length = tlv_length + sizeof(struct sctp_error_cause); 166f8829a4aSRandall Stewart aph->ph.param_length = error->length + 167f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr); 168f8829a4aSRandall Stewart 169f8829a4aSRandall Stewart if (aph->ph.param_length > MLEN) { 170ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 171ad81507eSRandall Stewart "asconf_error_response: tlv_length (%xh) too big\n", 172f8829a4aSRandall Stewart tlv_length); 173f8829a4aSRandall Stewart sctp_m_freem(m_reply); /* discard */ 174f8829a4aSRandall Stewart return NULL; 175f8829a4aSRandall Stewart } 176f8829a4aSRandall Stewart if (error_tlv != NULL) { 177f8829a4aSRandall Stewart tlv = (uint8_t *) (error + 1); 178f8829a4aSRandall Stewart memcpy(tlv, error_tlv, tlv_length); 179f8829a4aSRandall Stewart } 180139bc87fSRandall Stewart SCTP_BUF_LEN(m_reply) = aph->ph.param_length; 181f8829a4aSRandall Stewart error->length = htons(error->length); 182f8829a4aSRandall Stewart aph->ph.param_length = htons(aph->ph.param_length); 183f8829a4aSRandall Stewart 184f8829a4aSRandall Stewart return m_reply; 185f8829a4aSRandall Stewart } 186f8829a4aSRandall Stewart 187f8829a4aSRandall Stewart static struct mbuf * 188f8829a4aSRandall Stewart sctp_process_asconf_add_ip(struct mbuf *m, struct sctp_asconf_paramhdr *aph, 189f8829a4aSRandall Stewart struct sctp_tcb *stcb, int response_required) 190f8829a4aSRandall Stewart { 191f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 192f8829a4aSRandall Stewart struct sockaddr_storage sa_source, sa_store; 193f8829a4aSRandall Stewart struct sctp_ipv4addr_param *v4addr; 194f8829a4aSRandall Stewart uint16_t param_type, param_length, aparam_length; 195f8829a4aSRandall Stewart struct sockaddr *sa; 196f8829a4aSRandall Stewart struct sockaddr_in *sin; 197f8829a4aSRandall Stewart int zero_address = 0; 198f8829a4aSRandall Stewart 199f8829a4aSRandall Stewart #ifdef INET6 200f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 201f8829a4aSRandall Stewart struct sctp_ipv6addr_param *v6addr; 202f8829a4aSRandall Stewart 203f8829a4aSRandall Stewart #endif /* INET6 */ 204f8829a4aSRandall Stewart 205f8829a4aSRandall Stewart aparam_length = ntohs(aph->ph.param_length); 206f8829a4aSRandall Stewart v4addr = (struct sctp_ipv4addr_param *)(aph + 1); 207f8829a4aSRandall Stewart #ifdef INET6 208f8829a4aSRandall Stewart v6addr = (struct sctp_ipv6addr_param *)(aph + 1); 209f8829a4aSRandall Stewart #endif /* INET6 */ 210f8829a4aSRandall Stewart param_type = ntohs(v4addr->ph.param_type); 211f8829a4aSRandall Stewart param_length = ntohs(v4addr->ph.param_length); 212f8829a4aSRandall Stewart 213f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_store; 214f8829a4aSRandall Stewart switch (param_type) { 215f8829a4aSRandall Stewart case SCTP_IPV4_ADDRESS: 216f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv4addr_param)) { 217f8829a4aSRandall Stewart /* invalid param size */ 218f8829a4aSRandall Stewart return NULL; 219f8829a4aSRandall Stewart } 220f8829a4aSRandall Stewart sin = (struct sockaddr_in *)&sa_store; 221f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 222f8829a4aSRandall Stewart sin->sin_family = AF_INET; 223f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 224f8829a4aSRandall Stewart sin->sin_port = stcb->rport; 225f8829a4aSRandall Stewart sin->sin_addr.s_addr = v4addr->addr; 226f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == INADDR_ANY) 227f8829a4aSRandall Stewart zero_address = 1; 228ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_add_ip: adding "); 229ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 230f8829a4aSRandall Stewart break; 231f8829a4aSRandall Stewart case SCTP_IPV6_ADDRESS: 232f8829a4aSRandall Stewart #ifdef INET6 233f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv6addr_param)) { 234f8829a4aSRandall Stewart /* invalid param size */ 235f8829a4aSRandall Stewart return NULL; 236f8829a4aSRandall Stewart } 237f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)&sa_store; 238f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 239f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 240f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 241f8829a4aSRandall Stewart sin6->sin6_port = stcb->rport; 242f8829a4aSRandall Stewart memcpy((caddr_t)&sin6->sin6_addr, v6addr->addr, 243f8829a4aSRandall Stewart sizeof(struct in6_addr)); 244f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) 245f8829a4aSRandall Stewart zero_address = 1; 246ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_add_ip: adding "); 247ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 248f8829a4aSRandall Stewart #else 249f8829a4aSRandall Stewart /* IPv6 not enabled! */ 250f8829a4aSRandall Stewart /* FIX ME: currently sends back an invalid param error */ 251f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 252f8829a4aSRandall Stewart SCTP_CAUSE_INVALID_PARAM, (uint8_t *) aph, aparam_length); 253ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 254ad81507eSRandall Stewart "process_asconf_add_ip: v6 disabled- skipping "); 255ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 256f8829a4aSRandall Stewart return m_reply; 257ad81507eSRandall Stewart #endif 258f8829a4aSRandall Stewart break; 259f8829a4aSRandall Stewart default: 260f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 261f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 262f8829a4aSRandall Stewart aparam_length); 263f8829a4aSRandall Stewart return m_reply; 264f8829a4aSRandall Stewart } /* end switch */ 265f8829a4aSRandall Stewart 266f8829a4aSRandall Stewart /* if 0.0.0.0/::0, add the source address instead */ 267139bc87fSRandall Stewart if (zero_address && sctp_nat_friendly) { 268f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_source; 269f8829a4aSRandall Stewart sctp_asconf_get_source_ip(m, sa); 270ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 271ad81507eSRandall Stewart "process_asconf_add_ip: using source addr "); 272ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 273f8829a4aSRandall Stewart } 274f8829a4aSRandall Stewart /* add the address */ 275a5d547adSRandall Stewart if (sctp_add_remote_addr(stcb, sa, SCTP_DONOT_SETSCOPE, 276a5d547adSRandall Stewart SCTP_ADDR_DYNAMIC_ADDED) != 0) { 277ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 278ad81507eSRandall Stewart "process_asconf_add_ip: error adding address\n"); 279f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 280f8829a4aSRandall Stewart SCTP_CAUSE_RESOURCE_SHORTAGE, (uint8_t *) aph, 281f8829a4aSRandall Stewart aparam_length); 282f8829a4aSRandall Stewart } else { 283f8829a4aSRandall Stewart /* notify upper layer */ 284f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_ADD_IP, stcb, 0, sa); 285f8829a4aSRandall Stewart if (response_required) { 286f8829a4aSRandall Stewart m_reply = 287f8829a4aSRandall Stewart sctp_asconf_success_response(aph->correlation_id); 288f8829a4aSRandall Stewart } 2893c503c28SRandall Stewart sctp_timer_stop(SCTP_TIMER_TYPE_HEARTBEAT, stcb->sctp_ep, stcb, 2903c503c28SRandall Stewart NULL, SCTP_FROM_SCTP_ASCONF + SCTP_LOC_1); 2913c503c28SRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_HEARTBEAT, stcb->sctp_ep, 2923c503c28SRandall Stewart stcb, NULL); 293f8829a4aSRandall Stewart } 294f8829a4aSRandall Stewart 295f8829a4aSRandall Stewart return m_reply; 296f8829a4aSRandall Stewart } 297f8829a4aSRandall Stewart 298f8829a4aSRandall Stewart static int 299f8829a4aSRandall Stewart sctp_asconf_del_remote_addrs_except(struct sctp_tcb *stcb, 300f8829a4aSRandall Stewart struct sockaddr *src) 301f8829a4aSRandall Stewart { 302f8829a4aSRandall Stewart struct sctp_nets *src_net, *net; 303f8829a4aSRandall Stewart 304f8829a4aSRandall Stewart /* make sure the source address exists as a destination net */ 305f8829a4aSRandall Stewart src_net = sctp_findnet(stcb, src); 306f8829a4aSRandall Stewart if (src_net == NULL) { 307f8829a4aSRandall Stewart /* not found */ 308f8829a4aSRandall Stewart return -1; 309f8829a4aSRandall Stewart } 310f8829a4aSRandall Stewart /* delete all destination addresses except the source */ 311f8829a4aSRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 312f8829a4aSRandall Stewart if (net != src_net) { 313f8829a4aSRandall Stewart /* delete this address */ 314f8829a4aSRandall Stewart sctp_remove_net(stcb, net); 315ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 316ad81507eSRandall Stewart "asconf_del_remote_addrs_except: deleting "); 317ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, 318ad81507eSRandall Stewart (struct sockaddr *)&net->ro._l_addr); 319f8829a4aSRandall Stewart /* notify upper layer */ 320f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_DELETE_IP, stcb, 0, 321f8829a4aSRandall Stewart (struct sockaddr *)&net->ro._l_addr); 322f8829a4aSRandall Stewart } 323f8829a4aSRandall Stewart } 324f8829a4aSRandall Stewart return 0; 325f8829a4aSRandall Stewart } 326f8829a4aSRandall Stewart 327f8829a4aSRandall Stewart static struct mbuf * 328f8829a4aSRandall Stewart sctp_process_asconf_delete_ip(struct mbuf *m, struct sctp_asconf_paramhdr *aph, 329f8829a4aSRandall Stewart struct sctp_tcb *stcb, int response_required) 330f8829a4aSRandall Stewart { 331f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 332f8829a4aSRandall Stewart struct sockaddr_storage sa_source, sa_store; 333f8829a4aSRandall Stewart struct sctp_ipv4addr_param *v4addr; 334f8829a4aSRandall Stewart uint16_t param_type, param_length, aparam_length; 335f8829a4aSRandall Stewart struct sockaddr *sa; 336f8829a4aSRandall Stewart struct sockaddr_in *sin; 337f8829a4aSRandall Stewart int zero_address = 0; 338f8829a4aSRandall Stewart int result; 339f8829a4aSRandall Stewart 340f8829a4aSRandall Stewart #ifdef INET6 341f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 342f8829a4aSRandall Stewart struct sctp_ipv6addr_param *v6addr; 343f8829a4aSRandall Stewart 344f8829a4aSRandall Stewart #endif /* INET6 */ 345f8829a4aSRandall Stewart 346f8829a4aSRandall Stewart /* get the source IP address for src and 0.0.0.0/::0 delete checks */ 347f8829a4aSRandall Stewart sctp_asconf_get_source_ip(m, (struct sockaddr *)&sa_source); 348f8829a4aSRandall Stewart 349f8829a4aSRandall Stewart aparam_length = ntohs(aph->ph.param_length); 350f8829a4aSRandall Stewart v4addr = (struct sctp_ipv4addr_param *)(aph + 1); 351f8829a4aSRandall Stewart #ifdef INET6 352f8829a4aSRandall Stewart v6addr = (struct sctp_ipv6addr_param *)(aph + 1); 353f8829a4aSRandall Stewart #endif /* INET6 */ 354f8829a4aSRandall Stewart param_type = ntohs(v4addr->ph.param_type); 355f8829a4aSRandall Stewart param_length = ntohs(v4addr->ph.param_length); 356f8829a4aSRandall Stewart 357f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_store; 358f8829a4aSRandall Stewart switch (param_type) { 359f8829a4aSRandall Stewart case SCTP_IPV4_ADDRESS: 360f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv4addr_param)) { 361f8829a4aSRandall Stewart /* invalid param size */ 362f8829a4aSRandall Stewart return NULL; 363f8829a4aSRandall Stewart } 364f8829a4aSRandall Stewart sin = (struct sockaddr_in *)&sa_store; 365f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 366f8829a4aSRandall Stewart sin->sin_family = AF_INET; 367f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 368f8829a4aSRandall Stewart sin->sin_port = stcb->rport; 369f8829a4aSRandall Stewart sin->sin_addr.s_addr = v4addr->addr; 370f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == INADDR_ANY) 371f8829a4aSRandall Stewart zero_address = 1; 372ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 373ad81507eSRandall Stewart "process_asconf_delete_ip: deleting "); 374ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 375f8829a4aSRandall Stewart break; 376f8829a4aSRandall Stewart case SCTP_IPV6_ADDRESS: 377f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv6addr_param)) { 378f8829a4aSRandall Stewart /* invalid param size */ 379f8829a4aSRandall Stewart return NULL; 380f8829a4aSRandall Stewart } 381f8829a4aSRandall Stewart #ifdef INET6 382f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)&sa_store; 383f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 384f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 385f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 386f8829a4aSRandall Stewart sin6->sin6_port = stcb->rport; 387f8829a4aSRandall Stewart memcpy(&sin6->sin6_addr, v6addr->addr, 388f8829a4aSRandall Stewart sizeof(struct in6_addr)); 389f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) 390f8829a4aSRandall Stewart zero_address = 1; 391ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 392ad81507eSRandall Stewart "process_asconf_delete_ip: deleting "); 393ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 394f8829a4aSRandall Stewart #else 395f8829a4aSRandall Stewart /* IPv6 not enabled! No "action" needed; just ack it */ 396ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 397ad81507eSRandall Stewart "process_asconf_delete_ip: v6 disabled- ignoring: "); 398ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 399f8829a4aSRandall Stewart /* just respond with a "success" ASCONF-ACK */ 400f8829a4aSRandall Stewart return NULL; 401ad81507eSRandall Stewart #endif 402f8829a4aSRandall Stewart break; 403f8829a4aSRandall Stewart default: 404f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 405f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 406f8829a4aSRandall Stewart aparam_length); 407f8829a4aSRandall Stewart return m_reply; 408f8829a4aSRandall Stewart } 409f8829a4aSRandall Stewart 410f8829a4aSRandall Stewart /* make sure the source address is not being deleted */ 411f8829a4aSRandall Stewart if (sctp_cmpaddr(sa, (struct sockaddr *)&sa_source)) { 412f8829a4aSRandall Stewart /* trying to delete the source address! */ 413ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_delete_ip: tried to delete source addr\n"); 414f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 415f8829a4aSRandall Stewart SCTP_CAUSE_DELETING_SRC_ADDR, (uint8_t *) aph, 416f8829a4aSRandall Stewart aparam_length); 417f8829a4aSRandall Stewart return m_reply; 418f8829a4aSRandall Stewart } 419f8829a4aSRandall Stewart /* if deleting 0.0.0.0/::0, delete all addresses except src addr */ 420139bc87fSRandall Stewart if (zero_address && sctp_nat_friendly) { 421f8829a4aSRandall Stewart result = sctp_asconf_del_remote_addrs_except(stcb, 422f8829a4aSRandall Stewart (struct sockaddr *)&sa_source); 423f8829a4aSRandall Stewart 424f8829a4aSRandall Stewart if (result) { 425f8829a4aSRandall Stewart /* src address did not exist? */ 426ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_delete_ip: src addr does not exist?\n"); 427f8829a4aSRandall Stewart /* what error to reply with?? */ 428f8829a4aSRandall Stewart m_reply = 429f8829a4aSRandall Stewart sctp_asconf_error_response(aph->correlation_id, 430f8829a4aSRandall Stewart SCTP_CAUSE_REQUEST_REFUSED, (uint8_t *) aph, 431f8829a4aSRandall Stewart aparam_length); 432f8829a4aSRandall Stewart } else if (response_required) { 433f8829a4aSRandall Stewart m_reply = 434f8829a4aSRandall Stewart sctp_asconf_success_response(aph->correlation_id); 435f8829a4aSRandall Stewart } 436f8829a4aSRandall Stewart return m_reply; 437f8829a4aSRandall Stewart } 438f8829a4aSRandall Stewart /* delete the address */ 439f8829a4aSRandall Stewart result = sctp_del_remote_addr(stcb, sa); 440f8829a4aSRandall Stewart /* 441f8829a4aSRandall Stewart * note if result == -2, the address doesn't exist in the asoc but 442f8829a4aSRandall Stewart * since it's being deleted anyways, we just ack the delete -- but 443f8829a4aSRandall Stewart * this probably means something has already gone awry 444f8829a4aSRandall Stewart */ 445f8829a4aSRandall Stewart if (result == -1) { 446f8829a4aSRandall Stewart /* only one address in the asoc */ 447ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_delete_ip: tried to delete last IP addr!\n"); 448f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 449f8829a4aSRandall Stewart SCTP_CAUSE_DELETING_LAST_ADDR, (uint8_t *) aph, 450f8829a4aSRandall Stewart aparam_length); 451f8829a4aSRandall Stewart } else { 452f8829a4aSRandall Stewart if (response_required) { 453f8829a4aSRandall Stewart m_reply = sctp_asconf_success_response(aph->correlation_id); 454f8829a4aSRandall Stewart } 455f8829a4aSRandall Stewart /* notify upper layer */ 456f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_DELETE_IP, stcb, 0, sa); 457f8829a4aSRandall Stewart } 458f8829a4aSRandall Stewart return m_reply; 459f8829a4aSRandall Stewart } 460f8829a4aSRandall Stewart 461f8829a4aSRandall Stewart static struct mbuf * 462f8829a4aSRandall Stewart sctp_process_asconf_set_primary(struct mbuf *m, 463f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph, struct sctp_tcb *stcb, 464f8829a4aSRandall Stewart int response_required) 465f8829a4aSRandall Stewart { 466f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 467f8829a4aSRandall Stewart struct sockaddr_storage sa_source, sa_store; 468f8829a4aSRandall Stewart struct sctp_ipv4addr_param *v4addr; 469f8829a4aSRandall Stewart uint16_t param_type, param_length, aparam_length; 470f8829a4aSRandall Stewart struct sockaddr *sa; 471f8829a4aSRandall Stewart struct sockaddr_in *sin; 472f8829a4aSRandall Stewart int zero_address = 0; 473f8829a4aSRandall Stewart 474f8829a4aSRandall Stewart #ifdef INET6 475f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 476f8829a4aSRandall Stewart struct sctp_ipv6addr_param *v6addr; 477f8829a4aSRandall Stewart 478f8829a4aSRandall Stewart #endif /* INET6 */ 479f8829a4aSRandall Stewart 480f8829a4aSRandall Stewart aparam_length = ntohs(aph->ph.param_length); 481f8829a4aSRandall Stewart v4addr = (struct sctp_ipv4addr_param *)(aph + 1); 482f8829a4aSRandall Stewart #ifdef INET6 483f8829a4aSRandall Stewart v6addr = (struct sctp_ipv6addr_param *)(aph + 1); 484f8829a4aSRandall Stewart #endif /* INET6 */ 485f8829a4aSRandall Stewart param_type = ntohs(v4addr->ph.param_type); 486f8829a4aSRandall Stewart param_length = ntohs(v4addr->ph.param_length); 487f8829a4aSRandall Stewart 488f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_store; 489f8829a4aSRandall Stewart switch (param_type) { 490f8829a4aSRandall Stewart case SCTP_IPV4_ADDRESS: 491f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv4addr_param)) { 492f8829a4aSRandall Stewart /* invalid param size */ 493f8829a4aSRandall Stewart return NULL; 494f8829a4aSRandall Stewart } 495f8829a4aSRandall Stewart sin = (struct sockaddr_in *)&sa_store; 496f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 497f8829a4aSRandall Stewart sin->sin_family = AF_INET; 498f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 499f8829a4aSRandall Stewart sin->sin_addr.s_addr = v4addr->addr; 500f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == INADDR_ANY) 501f8829a4aSRandall Stewart zero_address = 1; 502ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_set_primary: "); 503ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 504f8829a4aSRandall Stewart break; 505f8829a4aSRandall Stewart case SCTP_IPV6_ADDRESS: 506f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv6addr_param)) { 507f8829a4aSRandall Stewart /* invalid param size */ 508f8829a4aSRandall Stewart return NULL; 509f8829a4aSRandall Stewart } 510f8829a4aSRandall Stewart #ifdef INET6 511f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)&sa_store; 512f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 513f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 514f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 515f8829a4aSRandall Stewart memcpy((caddr_t)&sin6->sin6_addr, v6addr->addr, 516f8829a4aSRandall Stewart sizeof(struct in6_addr)); 517f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) 518f8829a4aSRandall Stewart zero_address = 1; 519ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_set_primary: "); 520ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 521f8829a4aSRandall Stewart #else 522f8829a4aSRandall Stewart /* IPv6 not enabled! No "action" needed; just ack it */ 523ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 524ad81507eSRandall Stewart "process_asconf_set_primary: v6 disabled- ignoring: "); 525ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 526f8829a4aSRandall Stewart /* just respond with a "success" ASCONF-ACK */ 527f8829a4aSRandall Stewart return NULL; 528ad81507eSRandall Stewart #endif 529f8829a4aSRandall Stewart break; 530f8829a4aSRandall Stewart default: 531f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 532f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 533f8829a4aSRandall Stewart aparam_length); 534f8829a4aSRandall Stewart return m_reply; 535f8829a4aSRandall Stewart } 536f8829a4aSRandall Stewart 537f8829a4aSRandall Stewart /* if 0.0.0.0/::0, use the source address instead */ 538139bc87fSRandall Stewart if (zero_address && sctp_nat_friendly) { 539f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_source; 540f8829a4aSRandall Stewart sctp_asconf_get_source_ip(m, sa); 541ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 542ad81507eSRandall Stewart "process_asconf_set_primary: using source addr "); 543ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 544f8829a4aSRandall Stewart } 545f8829a4aSRandall Stewart /* set the primary address */ 546f8829a4aSRandall Stewart if (sctp_set_primary_addr(stcb, sa, NULL) == 0) { 547ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 548ad81507eSRandall Stewart "process_asconf_set_primary: primary address set\n"); 549f8829a4aSRandall Stewart /* notify upper layer */ 550f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_SET_PRIMARY, stcb, 0, sa); 551f8829a4aSRandall Stewart 552f8829a4aSRandall Stewart if (response_required) { 553f8829a4aSRandall Stewart m_reply = sctp_asconf_success_response(aph->correlation_id); 554f8829a4aSRandall Stewart } 555f8829a4aSRandall Stewart } else { 556f8829a4aSRandall Stewart /* couldn't set the requested primary address! */ 557ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 558ad81507eSRandall Stewart "process_asconf_set_primary: set primary failed!\n"); 559f8829a4aSRandall Stewart /* must have been an invalid address, so report */ 560f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 561f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 562f8829a4aSRandall Stewart aparam_length); 563f8829a4aSRandall Stewart } 564f8829a4aSRandall Stewart 565f8829a4aSRandall Stewart return m_reply; 566f8829a4aSRandall Stewart } 567f8829a4aSRandall Stewart 568f8829a4aSRandall Stewart /* 569f8829a4aSRandall Stewart * handles an ASCONF chunk. 570f8829a4aSRandall Stewart * if all parameters are processed ok, send a plain (empty) ASCONF-ACK 571f8829a4aSRandall Stewart */ 572f8829a4aSRandall Stewart void 573f8829a4aSRandall Stewart sctp_handle_asconf(struct mbuf *m, unsigned int offset, 574f8829a4aSRandall Stewart struct sctp_asconf_chunk *cp, struct sctp_tcb *stcb) 575f8829a4aSRandall Stewart { 576f8829a4aSRandall Stewart struct sctp_association *asoc; 577f8829a4aSRandall Stewart uint32_t serial_num; 578f8829a4aSRandall Stewart struct mbuf *m_ack, *m_result, *m_tail; 579f8829a4aSRandall Stewart struct sctp_asconf_ack_chunk *ack_cp; 580f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph, *ack_aph; 581f8829a4aSRandall Stewart struct sctp_ipv6addr_param *p_addr; 582f8829a4aSRandall Stewart unsigned int asconf_limit; 583f8829a4aSRandall Stewart int error = 0; /* did an error occur? */ 584f8829a4aSRandall Stewart 585f8829a4aSRandall Stewart /* asconf param buffer */ 586f42a358aSRandall Stewart uint8_t aparam_buf[SCTP_PARAM_BUFFER_SIZE]; 587f8829a4aSRandall Stewart 588f8829a4aSRandall Stewart /* verify minimum length */ 589f8829a4aSRandall Stewart if (ntohs(cp->ch.chunk_length) < sizeof(struct sctp_asconf_chunk)) { 590ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 591ad81507eSRandall Stewart "handle_asconf: chunk too small = %xh\n", 592f8829a4aSRandall Stewart ntohs(cp->ch.chunk_length)); 593f8829a4aSRandall Stewart return; 594f8829a4aSRandall Stewart } 595f8829a4aSRandall Stewart asoc = &stcb->asoc; 596f8829a4aSRandall Stewart serial_num = ntohl(cp->serial_number); 597f8829a4aSRandall Stewart 598f8829a4aSRandall Stewart if (serial_num == asoc->asconf_seq_in) { 599f8829a4aSRandall Stewart /* got a duplicate ASCONF */ 600ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 601ad81507eSRandall Stewart "handle_asconf: got duplicate serial number = %xh\n", 602f8829a4aSRandall Stewart serial_num); 603f8829a4aSRandall Stewart /* resend last ASCONF-ACK... */ 604f8829a4aSRandall Stewart sctp_send_asconf_ack(stcb, 1); 605f8829a4aSRandall Stewart return; 606f8829a4aSRandall Stewart } else if (serial_num != (asoc->asconf_seq_in + 1)) { 607ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: incorrect serial number = %xh (expected next = %xh)\n", 608f8829a4aSRandall Stewart serial_num, asoc->asconf_seq_in + 1); 609f8829a4aSRandall Stewart return; 610f8829a4aSRandall Stewart } 611f8829a4aSRandall Stewart /* it's the expected "next" sequence number, so process it */ 612f8829a4aSRandall Stewart asoc->asconf_seq_in = serial_num; /* update sequence */ 613f8829a4aSRandall Stewart /* get length of all the param's in the ASCONF */ 614f8829a4aSRandall Stewart asconf_limit = offset + ntohs(cp->ch.chunk_length); 615ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 616ad81507eSRandall Stewart "handle_asconf: asconf_limit=%u, sequence=%xh\n", 617f8829a4aSRandall Stewart asconf_limit, serial_num); 618f8829a4aSRandall Stewart if (asoc->last_asconf_ack_sent != NULL) { 619f8829a4aSRandall Stewart /* free last ASCONF-ACK message sent */ 620f8829a4aSRandall Stewart sctp_m_freem(asoc->last_asconf_ack_sent); 621f8829a4aSRandall Stewart asoc->last_asconf_ack_sent = NULL; 622f8829a4aSRandall Stewart } 623139bc87fSRandall Stewart m_ack = sctp_get_mbuf_for_msg(sizeof(struct sctp_asconf_ack_chunk), 0, 624f8829a4aSRandall Stewart M_DONTWAIT, 1, MT_DATA); 625f8829a4aSRandall Stewart if (m_ack == NULL) { 626ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 627ad81507eSRandall Stewart "handle_asconf: couldn't get mbuf!\n"); 628f8829a4aSRandall Stewart return; 629f8829a4aSRandall Stewart } 630f8829a4aSRandall Stewart m_tail = m_ack; /* current reply chain's tail */ 631f8829a4aSRandall Stewart 632f8829a4aSRandall Stewart /* fill in ASCONF-ACK header */ 633f8829a4aSRandall Stewart ack_cp = mtod(m_ack, struct sctp_asconf_ack_chunk *); 634f8829a4aSRandall Stewart ack_cp->ch.chunk_type = SCTP_ASCONF_ACK; 635f8829a4aSRandall Stewart ack_cp->ch.chunk_flags = 0; 636f8829a4aSRandall Stewart ack_cp->serial_number = htonl(serial_num); 637f8829a4aSRandall Stewart /* set initial lengths (eg. just an ASCONF-ACK), ntohx at the end! */ 638139bc87fSRandall Stewart SCTP_BUF_LEN(m_ack) = sizeof(struct sctp_asconf_ack_chunk); 639f8829a4aSRandall Stewart ack_cp->ch.chunk_length = sizeof(struct sctp_asconf_ack_chunk); 640f8829a4aSRandall Stewart 641f8829a4aSRandall Stewart /* skip the lookup address parameter */ 642f8829a4aSRandall Stewart offset += sizeof(struct sctp_asconf_chunk); 643f8829a4aSRandall Stewart p_addr = (struct sctp_ipv6addr_param *)sctp_m_getptr(m, offset, sizeof(struct sctp_paramhdr), (uint8_t *) & aparam_buf); 644f8829a4aSRandall Stewart if (p_addr == NULL) { 645ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 646ad81507eSRandall Stewart "handle_asconf: couldn't get lookup addr!\n"); 647f8829a4aSRandall Stewart /* respond with a missing/invalid mandatory parameter error */ 648f8829a4aSRandall Stewart return; 649f8829a4aSRandall Stewart } 650f8829a4aSRandall Stewart /* param_length is already validated in process_control... */ 651f8829a4aSRandall Stewart offset += ntohs(p_addr->ph.param_length); /* skip lookup addr */ 652f8829a4aSRandall Stewart 653f8829a4aSRandall Stewart /* get pointer to first asconf param in ASCONF-ACK */ 654f8829a4aSRandall Stewart ack_aph = (struct sctp_asconf_paramhdr *)(mtod(m_ack, caddr_t)+sizeof(struct sctp_asconf_ack_chunk)); 655f8829a4aSRandall Stewart if (ack_aph == NULL) { 656ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "Gak in asconf2\n"); 657f8829a4aSRandall Stewart return; 658f8829a4aSRandall Stewart } 659f8829a4aSRandall Stewart /* get pointer to first asconf param in ASCONF */ 660f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, sizeof(struct sctp_asconf_paramhdr), (uint8_t *) & aparam_buf); 661f8829a4aSRandall Stewart if (aph == NULL) { 662ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "Empty ASCONF received?\n"); 663f8829a4aSRandall Stewart goto send_reply; 664f8829a4aSRandall Stewart } 665f8829a4aSRandall Stewart /* process through all parameters */ 666f8829a4aSRandall Stewart while (aph != NULL) { 667f8829a4aSRandall Stewart unsigned int param_length, param_type; 668f8829a4aSRandall Stewart 669f8829a4aSRandall Stewart param_type = ntohs(aph->ph.param_type); 670f8829a4aSRandall Stewart param_length = ntohs(aph->ph.param_length); 671f8829a4aSRandall Stewart if (offset + param_length > asconf_limit) { 672f8829a4aSRandall Stewart /* parameter goes beyond end of chunk! */ 673f8829a4aSRandall Stewart sctp_m_freem(m_ack); 674f8829a4aSRandall Stewart return; 675f8829a4aSRandall Stewart } 676f8829a4aSRandall Stewart m_result = NULL; 677f8829a4aSRandall Stewart 678f8829a4aSRandall Stewart if (param_length > sizeof(aparam_buf)) { 679ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: param length (%u) larger than buffer size!\n", param_length); 680f8829a4aSRandall Stewart sctp_m_freem(m_ack); 681f8829a4aSRandall Stewart return; 682f8829a4aSRandall Stewart } 683f8829a4aSRandall Stewart if (param_length <= sizeof(struct sctp_paramhdr)) { 684ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: param length (%u) too short\n", param_length); 685f8829a4aSRandall Stewart sctp_m_freem(m_ack); 686f8829a4aSRandall Stewart } 687f8829a4aSRandall Stewart /* get the entire parameter */ 688f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, param_length, aparam_buf); 689f8829a4aSRandall Stewart if (aph == NULL) { 690ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: couldn't get entire param\n"); 691f8829a4aSRandall Stewart sctp_m_freem(m_ack); 692f8829a4aSRandall Stewart return; 693f8829a4aSRandall Stewart } 694f8829a4aSRandall Stewart switch (param_type) { 695f8829a4aSRandall Stewart case SCTP_ADD_IP_ADDRESS: 696f8829a4aSRandall Stewart asoc->peer_supports_asconf = 1; 697f8829a4aSRandall Stewart m_result = sctp_process_asconf_add_ip(m, aph, stcb, 698f8829a4aSRandall Stewart error); 699f8829a4aSRandall Stewart break; 700f8829a4aSRandall Stewart case SCTP_DEL_IP_ADDRESS: 701f8829a4aSRandall Stewart asoc->peer_supports_asconf = 1; 702f8829a4aSRandall Stewart m_result = sctp_process_asconf_delete_ip(m, aph, stcb, 703f8829a4aSRandall Stewart error); 704f8829a4aSRandall Stewart break; 705f8829a4aSRandall Stewart case SCTP_ERROR_CAUSE_IND: 706f8829a4aSRandall Stewart /* not valid in an ASCONF chunk */ 707f8829a4aSRandall Stewart break; 708f8829a4aSRandall Stewart case SCTP_SET_PRIM_ADDR: 709f8829a4aSRandall Stewart asoc->peer_supports_asconf = 1; 710f8829a4aSRandall Stewart m_result = sctp_process_asconf_set_primary(m, aph, 711f8829a4aSRandall Stewart stcb, error); 712f8829a4aSRandall Stewart break; 713f8829a4aSRandall Stewart case SCTP_SUCCESS_REPORT: 714f8829a4aSRandall Stewart /* not valid in an ASCONF chunk */ 715f8829a4aSRandall Stewart break; 716f8829a4aSRandall Stewart case SCTP_ULP_ADAPTATION: 717f8829a4aSRandall Stewart /* FIX */ 718f8829a4aSRandall Stewart break; 719f8829a4aSRandall Stewart default: 720f8829a4aSRandall Stewart if ((param_type & 0x8000) == 0) { 721f8829a4aSRandall Stewart /* Been told to STOP at this param */ 722f8829a4aSRandall Stewart asconf_limit = offset; 723f8829a4aSRandall Stewart /* 724f8829a4aSRandall Stewart * FIX FIX - We need to call 725f8829a4aSRandall Stewart * sctp_arethere_unrecognized_parameters() 726f8829a4aSRandall Stewart * to get a operr and send it for any 727f8829a4aSRandall Stewart * param's with the 0x4000 bit set OR do it 728f8829a4aSRandall Stewart * here ourselves... note we still must STOP 729f8829a4aSRandall Stewart * if the 0x8000 bit is clear. 730f8829a4aSRandall Stewart */ 731f8829a4aSRandall Stewart } 732f8829a4aSRandall Stewart /* unknown/invalid param type */ 733f8829a4aSRandall Stewart break; 734f8829a4aSRandall Stewart } /* switch */ 735f8829a4aSRandall Stewart 736f8829a4aSRandall Stewart /* add any (error) result to the reply mbuf chain */ 737f8829a4aSRandall Stewart if (m_result != NULL) { 738139bc87fSRandall Stewart SCTP_BUF_NEXT(m_tail) = m_result; 739f8829a4aSRandall Stewart m_tail = m_result; 740f8829a4aSRandall Stewart /* update lengths, make sure it's aligned too */ 741139bc87fSRandall Stewart SCTP_BUF_LEN(m_result) = SCTP_SIZE32(SCTP_BUF_LEN(m_result)); 742139bc87fSRandall Stewart ack_cp->ch.chunk_length += SCTP_BUF_LEN(m_result); 743f8829a4aSRandall Stewart /* set flag to force success reports */ 744f8829a4aSRandall Stewart error = 1; 745f8829a4aSRandall Stewart } 746f8829a4aSRandall Stewart offset += SCTP_SIZE32(param_length); 747f8829a4aSRandall Stewart /* update remaining ASCONF message length to process */ 748f8829a4aSRandall Stewart if (offset >= asconf_limit) { 749f8829a4aSRandall Stewart /* no more data in the mbuf chain */ 750f8829a4aSRandall Stewart break; 751f8829a4aSRandall Stewart } 752f8829a4aSRandall Stewart /* get pointer to next asconf param */ 753f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, 754f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr), 755f8829a4aSRandall Stewart (uint8_t *) & aparam_buf); 756f8829a4aSRandall Stewart if (aph == NULL) { 757f8829a4aSRandall Stewart /* can't get an asconf paramhdr */ 758ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: can't get asconf param hdr!\n"); 759f8829a4aSRandall Stewart /* FIX ME - add error here... */ 760f8829a4aSRandall Stewart } 761ad81507eSRandall Stewart } 762f8829a4aSRandall Stewart 763f8829a4aSRandall Stewart send_reply: 764f8829a4aSRandall Stewart ack_cp->ch.chunk_length = htons(ack_cp->ch.chunk_length); 765f8829a4aSRandall Stewart /* save the ASCONF-ACK reply */ 766f8829a4aSRandall Stewart asoc->last_asconf_ack_sent = m_ack; 767f8829a4aSRandall Stewart 768f8829a4aSRandall Stewart /* see if last_control_chunk_from is set properly (use IP src addr) */ 769f8829a4aSRandall Stewart if (stcb->asoc.last_control_chunk_from == NULL) { 770f8829a4aSRandall Stewart /* 771f8829a4aSRandall Stewart * this could happen if the source address was just newly 772f8829a4aSRandall Stewart * added 773f8829a4aSRandall Stewart */ 774f8829a4aSRandall Stewart struct ip *iph; 775f8829a4aSRandall Stewart struct sctphdr *sh; 776f8829a4aSRandall Stewart struct sockaddr_storage from_store; 777f8829a4aSRandall Stewart struct sockaddr *from = (struct sockaddr *)&from_store; 778f8829a4aSRandall Stewart 779ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: looking up net for IP source address\n"); 780f8829a4aSRandall Stewart /* pullup already done, IP options already stripped */ 781f8829a4aSRandall Stewart iph = mtod(m, struct ip *); 782f8829a4aSRandall Stewart sh = (struct sctphdr *)((caddr_t)iph + sizeof(*iph)); 783f8829a4aSRandall Stewart if (iph->ip_v == IPVERSION) { 784f8829a4aSRandall Stewart struct sockaddr_in *from4; 785f8829a4aSRandall Stewart 786f8829a4aSRandall Stewart from4 = (struct sockaddr_in *)&from_store; 787f8829a4aSRandall Stewart bzero(from4, sizeof(*from4)); 788f8829a4aSRandall Stewart from4->sin_family = AF_INET; 789f8829a4aSRandall Stewart from4->sin_len = sizeof(struct sockaddr_in); 790f8829a4aSRandall Stewart from4->sin_addr.s_addr = iph->ip_src.s_addr; 791f8829a4aSRandall Stewart from4->sin_port = sh->src_port; 792f8829a4aSRandall Stewart } else if (iph->ip_v == (IPV6_VERSION >> 4)) { 793f8829a4aSRandall Stewart struct ip6_hdr *ip6; 794f8829a4aSRandall Stewart struct sockaddr_in6 *from6; 795f8829a4aSRandall Stewart 796f8829a4aSRandall Stewart ip6 = mtod(m, struct ip6_hdr *); 797f8829a4aSRandall Stewart from6 = (struct sockaddr_in6 *)&from_store; 798f8829a4aSRandall Stewart bzero(from6, sizeof(*from6)); 799f8829a4aSRandall Stewart from6->sin6_family = AF_INET6; 800f8829a4aSRandall Stewart from6->sin6_len = sizeof(struct sockaddr_in6); 801f8829a4aSRandall Stewart from6->sin6_addr = ip6->ip6_src; 802f8829a4aSRandall Stewart from6->sin6_port = sh->src_port; 803f8829a4aSRandall Stewart /* Get the scopes in properly to the sin6 addr's */ 804f8829a4aSRandall Stewart /* we probably don't need these operations */ 805f8829a4aSRandall Stewart (void)sa6_recoverscope(from6); 806f8829a4aSRandall Stewart sa6_embedscope(from6, ip6_use_defzone); 807f8829a4aSRandall Stewart } else { 808f8829a4aSRandall Stewart /* unknown address type */ 809f8829a4aSRandall Stewart from = NULL; 810f8829a4aSRandall Stewart } 811f8829a4aSRandall Stewart if (from != NULL) { 812ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "Looking for IP source: "); 813ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, from); 814f8829a4aSRandall Stewart /* look up the from address */ 815f8829a4aSRandall Stewart stcb->asoc.last_control_chunk_from = sctp_findnet(stcb, from); 816f8829a4aSRandall Stewart #ifdef SCTP_DEBUG 817ad81507eSRandall Stewart if (stcb->asoc.last_control_chunk_from == NULL) 818ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: IP source address not found?!\n"); 819ad81507eSRandall Stewart #endif 820f8829a4aSRandall Stewart } 821f8829a4aSRandall Stewart } 822f8829a4aSRandall Stewart /* and send it (a new one) out... */ 823f8829a4aSRandall Stewart sctp_send_asconf_ack(stcb, 0); 824f8829a4aSRandall Stewart } 825f8829a4aSRandall Stewart 826f8829a4aSRandall Stewart /* 827f8829a4aSRandall Stewart * does the address match? returns 0 if not, 1 if so 828f8829a4aSRandall Stewart */ 829f8829a4aSRandall Stewart static uint32_t 830f8829a4aSRandall Stewart sctp_asconf_addr_match(struct sctp_asconf_addr *aa, struct sockaddr *sa) 831f8829a4aSRandall Stewart { 832f8829a4aSRandall Stewart #ifdef INET6 833f8829a4aSRandall Stewart if (sa->sa_family == AF_INET6) { 834f8829a4aSRandall Stewart /* IPv6 sa address */ 835f8829a4aSRandall Stewart /* XXX scopeid */ 836f8829a4aSRandall Stewart struct sockaddr_in6 *sin6 = (struct sockaddr_in6 *)sa; 837f8829a4aSRandall Stewart 838f8829a4aSRandall Stewart if ((aa->ap.addrp.ph.param_type == SCTP_IPV6_ADDRESS) && 839f8829a4aSRandall Stewart (memcmp(&aa->ap.addrp.addr, &sin6->sin6_addr, 840f8829a4aSRandall Stewart sizeof(struct in6_addr)) == 0)) { 841f8829a4aSRandall Stewart return (1); 842f8829a4aSRandall Stewart } 843f8829a4aSRandall Stewart } else 844f8829a4aSRandall Stewart #endif /* INET6 */ 845f8829a4aSRandall Stewart if (sa->sa_family == AF_INET) { 846f8829a4aSRandall Stewart /* IPv4 sa address */ 847f8829a4aSRandall Stewart struct sockaddr_in *sin = (struct sockaddr_in *)sa; 848f8829a4aSRandall Stewart 849f8829a4aSRandall Stewart if ((aa->ap.addrp.ph.param_type == SCTP_IPV4_ADDRESS) && 850f8829a4aSRandall Stewart (memcmp(&aa->ap.addrp.addr, &sin->sin_addr, 851f8829a4aSRandall Stewart sizeof(struct in_addr)) == 0)) { 852f8829a4aSRandall Stewart return (1); 853f8829a4aSRandall Stewart } 854f8829a4aSRandall Stewart } 855f8829a4aSRandall Stewart return (0); 856f8829a4aSRandall Stewart } 857f8829a4aSRandall Stewart 858f8829a4aSRandall Stewart /* 859f8829a4aSRandall Stewart * Cleanup for non-responded/OP ERR'd ASCONF 860f8829a4aSRandall Stewart */ 861f8829a4aSRandall Stewart void 862f8829a4aSRandall Stewart sctp_asconf_cleanup(struct sctp_tcb *stcb, struct sctp_nets *net) 863f8829a4aSRandall Stewart { 864f8829a4aSRandall Stewart /* mark peer as ASCONF incapable */ 865f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 866f8829a4aSRandall Stewart /* 867f8829a4aSRandall Stewart * clear out any existing asconfs going out 868f8829a4aSRandall Stewart */ 8693c503c28SRandall Stewart sctp_timer_stop(SCTP_TIMER_TYPE_ASCONF, stcb->sctp_ep, stcb, net, 8703c503c28SRandall Stewart SCTP_FROM_SCTP_ASCONF + SCTP_LOC_2); 871f8829a4aSRandall Stewart stcb->asoc.asconf_seq_out++; 872f8829a4aSRandall Stewart /* remove the old ASCONF on our outbound queue */ 873f8829a4aSRandall Stewart sctp_toss_old_asconf(stcb); 874f8829a4aSRandall Stewart } 875f8829a4aSRandall Stewart 876f8829a4aSRandall Stewart /* 877f8829a4aSRandall Stewart * process an ADD/DELETE IP ack from peer. 87842551e99SRandall Stewart * addr corresponding sctp_ifa to the address being added/deleted. 879f8829a4aSRandall Stewart * type: SCTP_ADD_IP_ADDRESS or SCTP_DEL_IP_ADDRESS. 880f8829a4aSRandall Stewart * flag: 1=success, 0=failure. 881f8829a4aSRandall Stewart */ 882f8829a4aSRandall Stewart static void 88342551e99SRandall Stewart sctp_asconf_addr_mgmt_ack(struct sctp_tcb *stcb, struct sctp_ifa *addr, 884f8829a4aSRandall Stewart uint16_t type, uint32_t flag) 885f8829a4aSRandall Stewart { 886f8829a4aSRandall Stewart /* 887f8829a4aSRandall Stewart * do the necessary asoc list work- if we get a failure indication, 888f8829a4aSRandall Stewart * leave the address on the "do not use" asoc list if we get a 889f8829a4aSRandall Stewart * success indication, remove the address from the list 890f8829a4aSRandall Stewart */ 891f8829a4aSRandall Stewart /* 892f8829a4aSRandall Stewart * Note: this will only occur for ADD_IP_ADDRESS, since 893f8829a4aSRandall Stewart * DEL_IP_ADDRESS is never actually added to the list... 894f8829a4aSRandall Stewart */ 895f8829a4aSRandall Stewart if (flag) { 896f8829a4aSRandall Stewart /* success case, so remove from the list */ 897f8829a4aSRandall Stewart sctp_del_local_addr_assoc(stcb, addr); 898f8829a4aSRandall Stewart } 899f8829a4aSRandall Stewart /* else, leave it on the list */ 900f8829a4aSRandall Stewart } 901f8829a4aSRandall Stewart 902f8829a4aSRandall Stewart /* 903f8829a4aSRandall Stewart * add an asconf add/delete IP address parameter to the queue. 904f8829a4aSRandall Stewart * type = SCTP_ADD_IP_ADDRESS, SCTP_DEL_IP_ADDRESS, SCTP_SET_PRIM_ADDR. 905f8829a4aSRandall Stewart * returns 0 if completed, non-zero if not completed. 906f8829a4aSRandall Stewart * NOTE: if adding, but delete already scheduled (and not yet sent out), 907f8829a4aSRandall Stewart * simply remove from queue. Same for deleting an address already scheduled 908f8829a4aSRandall Stewart * for add. If a duplicate operation is found, ignore the new one. 909f8829a4aSRandall Stewart */ 910f8829a4aSRandall Stewart static uint32_t 91142551e99SRandall Stewart sctp_asconf_queue_add(struct sctp_tcb *stcb, struct sctp_ifa *ifa, uint16_t type) 912f8829a4aSRandall Stewart { 913f8829a4aSRandall Stewart struct sctp_asconf_addr *aa, *aa_next; 914f8829a4aSRandall Stewart struct sockaddr *sa; 915f8829a4aSRandall Stewart 916f8829a4aSRandall Stewart /* see if peer supports ASCONF */ 917f8829a4aSRandall Stewart if (stcb->asoc.peer_supports_asconf == 0) { 918f8829a4aSRandall Stewart return (-1); 919f8829a4aSRandall Stewart } 920f8829a4aSRandall Stewart /* make sure the request isn't already in the queue */ 921f8829a4aSRandall Stewart for (aa = TAILQ_FIRST(&stcb->asoc.asconf_queue); aa != NULL; 922f8829a4aSRandall Stewart aa = aa_next) { 923f8829a4aSRandall Stewart aa_next = TAILQ_NEXT(aa, next); 924f8829a4aSRandall Stewart /* address match? */ 92542551e99SRandall Stewart if (sctp_asconf_addr_match(aa, &ifa->address.sa) == 0) 926f8829a4aSRandall Stewart continue; 927f8829a4aSRandall Stewart /* is the request already in queue (sent or not) */ 928f8829a4aSRandall Stewart if (aa->ap.aph.ph.param_type == type) { 929f8829a4aSRandall Stewart return (-1); 930f8829a4aSRandall Stewart } 931f8829a4aSRandall Stewart /* is the negative request already in queue, and not sent */ 932f8829a4aSRandall Stewart if (aa->sent == 0 && 933f8829a4aSRandall Stewart /* add requested, delete already queued */ 934f8829a4aSRandall Stewart ((type == SCTP_ADD_IP_ADDRESS && 935f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_DEL_IP_ADDRESS) || 936f8829a4aSRandall Stewart /* delete requested, add already queued */ 937f8829a4aSRandall Stewart (type == SCTP_DEL_IP_ADDRESS && 938f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_ADD_IP_ADDRESS))) { 939f8829a4aSRandall Stewart /* delete the existing entry in the queue */ 940f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 941f8829a4aSRandall Stewart /* take the entry off the appropriate list */ 942f8829a4aSRandall Stewart sctp_asconf_addr_mgmt_ack(stcb, aa->ifa, type, 1); 943f8829a4aSRandall Stewart /* free the entry */ 944bff64a4dSRandall Stewart sctp_free_ifa(aa->ifa); 945207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 946f8829a4aSRandall Stewart return (-1); 947f8829a4aSRandall Stewart } 948f8829a4aSRandall Stewart } /* for each aa */ 949f8829a4aSRandall Stewart 950f8829a4aSRandall Stewart /* adding new request to the queue */ 951207304d4SRandall Stewart SCTP_MALLOC(aa, struct sctp_asconf_addr *, sizeof(*aa), SCTP_M_ASC_ADDR); 952f8829a4aSRandall Stewart if (aa == NULL) { 953f8829a4aSRandall Stewart /* didn't get memory */ 954ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 955ad81507eSRandall Stewart "asconf_queue_add: failed to get memory!\n"); 956f8829a4aSRandall Stewart return (-1); 957f8829a4aSRandall Stewart } 958f8829a4aSRandall Stewart /* fill in asconf address parameter fields */ 959f8829a4aSRandall Stewart /* top level elements are "networked" during send */ 960f8829a4aSRandall Stewart aa->ap.aph.ph.param_type = type; 961f8829a4aSRandall Stewart aa->ifa = ifa; 962bff64a4dSRandall Stewart atomic_add_int(&ifa->refcount, 1); 963f8829a4aSRandall Stewart /* correlation_id filled in during send routine later... */ 96442551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 965f8829a4aSRandall Stewart /* IPv6 address */ 966f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 967f8829a4aSRandall Stewart 96842551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&ifa->address.sa; 969f8829a4aSRandall Stewart sa = (struct sockaddr *)sin6; 970f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV6_ADDRESS; 971f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv6addr_param)); 972f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = 973f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr) + 974f8829a4aSRandall Stewart sizeof(struct sctp_ipv6addr_param); 975f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin6->sin6_addr, 976f8829a4aSRandall Stewart sizeof(struct in6_addr)); 97742551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 978f8829a4aSRandall Stewart /* IPv4 address */ 97942551e99SRandall Stewart struct sockaddr_in *sin = (struct sockaddr_in *)&ifa->address.sa; 980f8829a4aSRandall Stewart 981f8829a4aSRandall Stewart sa = (struct sockaddr *)sin; 982f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV4_ADDRESS; 983f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv4addr_param)); 984f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = 985f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr) + 986f8829a4aSRandall Stewart sizeof(struct sctp_ipv4addr_param); 987f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin->sin_addr, 988f8829a4aSRandall Stewart sizeof(struct in_addr)); 989f8829a4aSRandall Stewart } else { 990f8829a4aSRandall Stewart /* invalid family! */ 991207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 992f8829a4aSRandall Stewart return (-1); 993f8829a4aSRandall Stewart } 994f8829a4aSRandall Stewart aa->sent = 0; /* clear sent flag */ 995f8829a4aSRandall Stewart 996f8829a4aSRandall Stewart /* 997f8829a4aSRandall Stewart * if we are deleting an address it should go out last otherwise, 998f8829a4aSRandall Stewart * add it to front of the pending queue 999f8829a4aSRandall Stewart */ 1000f8829a4aSRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 1001f8829a4aSRandall Stewart /* add goes to the front of the queue */ 1002f8829a4aSRandall Stewart TAILQ_INSERT_HEAD(&stcb->asoc.asconf_queue, aa, next); 1003ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, 1004ad81507eSRandall Stewart "asconf_queue_add: appended asconf ADD_IP_ADDRESS: "); 1005ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 1006f8829a4aSRandall Stewart } else { 1007f8829a4aSRandall Stewart /* delete and set primary goes to the back of the queue */ 1008f8829a4aSRandall Stewart TAILQ_INSERT_TAIL(&stcb->asoc.asconf_queue, aa, next); 1009f8829a4aSRandall Stewart #ifdef SCTP_DEBUG 1010ad81507eSRandall Stewart if (sctp_debug_on && SCTP_DEBUG_ASCONF2) { 1011f8829a4aSRandall Stewart if (type == SCTP_DEL_IP_ADDRESS) { 1012ad81507eSRandall Stewart SCTP_PRINTF("asconf_queue_add: inserted asconf DEL_IP_ADDRESS: "); 1013ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 1014f8829a4aSRandall Stewart } else { 1015ad81507eSRandall Stewart SCTP_PRINTF("asconf_queue_add: inserted asconf SET_PRIM_ADDR: "); 1016ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 1017f8829a4aSRandall Stewart } 1018f8829a4aSRandall Stewart } 1019ad81507eSRandall Stewart #endif 1020f8829a4aSRandall Stewart } 1021f8829a4aSRandall Stewart 1022f8829a4aSRandall Stewart return (0); 1023f8829a4aSRandall Stewart } 1024f8829a4aSRandall Stewart 1025f8829a4aSRandall Stewart /* 1026f8829a4aSRandall Stewart * add an asconf add/delete IP address parameter to the queue by addr. 1027f8829a4aSRandall Stewart * type = SCTP_ADD_IP_ADDRESS, SCTP_DEL_IP_ADDRESS, SCTP_SET_PRIM_ADDR. 1028f8829a4aSRandall Stewart * returns 0 if completed, non-zero if not completed. 1029f8829a4aSRandall Stewart * NOTE: if adding, but delete already scheduled (and not yet sent out), 1030f8829a4aSRandall Stewart * simply remove from queue. Same for deleting an address already scheduled 1031f8829a4aSRandall Stewart * for add. If a duplicate operation is found, ignore the new one. 1032f8829a4aSRandall Stewart */ 1033f8829a4aSRandall Stewart static uint32_t 1034f8829a4aSRandall Stewart sctp_asconf_queue_add_sa(struct sctp_tcb *stcb, struct sockaddr *sa, 1035f8829a4aSRandall Stewart uint16_t type) 1036f8829a4aSRandall Stewart { 1037bff64a4dSRandall Stewart struct sctp_ifa *ifa; 1038f8829a4aSRandall Stewart struct sctp_asconf_addr *aa, *aa_next; 103942551e99SRandall Stewart uint32_t vrf_id; 1040f8829a4aSRandall Stewart 1041ad81507eSRandall Stewart if (stcb == NULL) { 1042ad81507eSRandall Stewart return (-1); 1043ad81507eSRandall Stewart } 1044f8829a4aSRandall Stewart /* see if peer supports ASCONF */ 1045f8829a4aSRandall Stewart if (stcb->asoc.peer_supports_asconf == 0) { 1046f8829a4aSRandall Stewart return (-1); 1047f8829a4aSRandall Stewart } 1048f8829a4aSRandall Stewart /* make sure the request isn't already in the queue */ 1049f8829a4aSRandall Stewart for (aa = TAILQ_FIRST(&stcb->asoc.asconf_queue); aa != NULL; 1050f8829a4aSRandall Stewart aa = aa_next) { 1051f8829a4aSRandall Stewart aa_next = TAILQ_NEXT(aa, next); 1052f8829a4aSRandall Stewart /* address match? */ 1053f8829a4aSRandall Stewart if (sctp_asconf_addr_match(aa, sa) == 0) 1054f8829a4aSRandall Stewart continue; 1055f8829a4aSRandall Stewart /* is the request already in queue (sent or not) */ 1056f8829a4aSRandall Stewart if (aa->ap.aph.ph.param_type == type) { 1057f8829a4aSRandall Stewart return (-1); 1058f8829a4aSRandall Stewart } 1059f8829a4aSRandall Stewart /* is the negative request already in queue, and not sent */ 1060f8829a4aSRandall Stewart if (aa->sent == 1) 1061f8829a4aSRandall Stewart continue; 1062f8829a4aSRandall Stewart if (type == SCTP_ADD_IP_ADDRESS && 1063f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_DEL_IP_ADDRESS) { 1064f8829a4aSRandall Stewart /* add requested, delete already queued */ 1065f8829a4aSRandall Stewart 1066f8829a4aSRandall Stewart /* delete the existing entry in the queue */ 1067f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 1068f8829a4aSRandall Stewart /* free the entry */ 1069bff64a4dSRandall Stewart sctp_free_ifa(aa->ifa); 1070207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 1071f8829a4aSRandall Stewart return (-1); 1072f8829a4aSRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS && 1073f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_ADD_IP_ADDRESS) { 1074f8829a4aSRandall Stewart /* delete requested, add already queued */ 1075f8829a4aSRandall Stewart 1076f8829a4aSRandall Stewart /* delete the existing entry in the queue */ 1077f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 1078f8829a4aSRandall Stewart /* take the entry off the appropriate list */ 1079f8829a4aSRandall Stewart sctp_asconf_addr_mgmt_ack(stcb, aa->ifa, type, 1); 1080f8829a4aSRandall Stewart /* free the entry */ 1081bff64a4dSRandall Stewart sctp_free_ifa(aa->ifa); 1082207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 1083f8829a4aSRandall Stewart return (-1); 1084f8829a4aSRandall Stewart } 1085f8829a4aSRandall Stewart } /* for each aa */ 1086bff64a4dSRandall Stewart if (stcb) { 1087bff64a4dSRandall Stewart vrf_id = stcb->asoc.vrf_id; 1088bff64a4dSRandall Stewart } else { 1089bff64a4dSRandall Stewart vrf_id = SCTP_DEFAULT_VRFID; 1090bff64a4dSRandall Stewart } 1091f8829a4aSRandall Stewart 1092bff64a4dSRandall Stewart ifa = sctp_find_ifa_by_addr(sa, vrf_id, 0); 1093bff64a4dSRandall Stewart if (ifa == NULL) { 1094bff64a4dSRandall Stewart /* Invalid address */ 1095bff64a4dSRandall Stewart return (-1); 1096bff64a4dSRandall Stewart } 1097f8829a4aSRandall Stewart /* adding new request to the queue */ 1098207304d4SRandall Stewart SCTP_MALLOC(aa, struct sctp_asconf_addr *, sizeof(*aa), SCTP_M_ASC_ADDR); 1099f8829a4aSRandall Stewart if (aa == NULL) { 1100f8829a4aSRandall Stewart /* didn't get memory */ 1101ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1102ad81507eSRandall Stewart "asconf_queue_add_sa: failed to get memory!\n"); 1103f8829a4aSRandall Stewart return (-1); 1104f8829a4aSRandall Stewart } 1105f8829a4aSRandall Stewart /* fill in asconf address parameter fields */ 1106f8829a4aSRandall Stewart /* top level elements are "networked" during send */ 1107f8829a4aSRandall Stewart aa->ap.aph.ph.param_type = type; 1108bff64a4dSRandall Stewart aa->ifa = ifa; 1109bff64a4dSRandall Stewart atomic_add_int(&ifa->refcount, 1); 1110f8829a4aSRandall Stewart /* correlation_id filled in during send routine later... */ 1111f8829a4aSRandall Stewart if (sa->sa_family == AF_INET6) { 1112f8829a4aSRandall Stewart /* IPv6 address */ 1113f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 1114f8829a4aSRandall Stewart 1115f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 1116f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV6_ADDRESS; 1117f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv6addr_param)); 1118f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = sizeof(struct sctp_asconf_paramhdr) + sizeof(struct sctp_ipv6addr_param); 1119f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin6->sin6_addr, 1120f8829a4aSRandall Stewart sizeof(struct in6_addr)); 1121f8829a4aSRandall Stewart } else if (sa->sa_family == AF_INET) { 1122f8829a4aSRandall Stewart /* IPv4 address */ 1123f8829a4aSRandall Stewart struct sockaddr_in *sin = (struct sockaddr_in *)sa; 1124f8829a4aSRandall Stewart 1125f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV4_ADDRESS; 1126f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv4addr_param)); 1127f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = sizeof(struct sctp_asconf_paramhdr) + sizeof(struct sctp_ipv4addr_param); 1128f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin->sin_addr, 1129f8829a4aSRandall Stewart sizeof(struct in_addr)); 1130f8829a4aSRandall Stewart } else { 1131f8829a4aSRandall Stewart /* invalid family! */ 1132207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 1133f8829a4aSRandall Stewart return (-1); 1134f8829a4aSRandall Stewart } 1135f8829a4aSRandall Stewart aa->sent = 0; /* clear sent flag */ 1136f8829a4aSRandall Stewart 1137f8829a4aSRandall Stewart /* 1138f8829a4aSRandall Stewart * if we are deleting an address it should go out last otherwise, 1139f8829a4aSRandall Stewart * add it to front of the pending queue 1140f8829a4aSRandall Stewart */ 1141f8829a4aSRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 1142f8829a4aSRandall Stewart /* add goes to the front of the queue */ 1143f8829a4aSRandall Stewart TAILQ_INSERT_HEAD(&stcb->asoc.asconf_queue, aa, next); 1144f8829a4aSRandall Stewart } else { 1145f8829a4aSRandall Stewart /* delete and set primary goes to the back of the queue */ 1146f8829a4aSRandall Stewart TAILQ_INSERT_TAIL(&stcb->asoc.asconf_queue, aa, next); 1147f8829a4aSRandall Stewart } 1148f8829a4aSRandall Stewart 1149f8829a4aSRandall Stewart return (0); 1150f8829a4aSRandall Stewart } 1151f8829a4aSRandall Stewart 1152f8829a4aSRandall Stewart /* 1153f8829a4aSRandall Stewart * find a specific asconf param on our "sent" queue 1154f8829a4aSRandall Stewart */ 1155f8829a4aSRandall Stewart static struct sctp_asconf_addr * 1156f8829a4aSRandall Stewart sctp_asconf_find_param(struct sctp_tcb *stcb, uint32_t correlation_id) 1157f8829a4aSRandall Stewart { 1158f8829a4aSRandall Stewart struct sctp_asconf_addr *aa; 1159f8829a4aSRandall Stewart 1160f8829a4aSRandall Stewart TAILQ_FOREACH(aa, &stcb->asoc.asconf_queue, next) { 1161f8829a4aSRandall Stewart if (aa->ap.aph.correlation_id == correlation_id && 1162f8829a4aSRandall Stewart aa->sent == 1) { 1163f8829a4aSRandall Stewart /* found it */ 1164f8829a4aSRandall Stewart return (aa); 1165f8829a4aSRandall Stewart } 1166f8829a4aSRandall Stewart } 1167f8829a4aSRandall Stewart /* didn't find it */ 1168f8829a4aSRandall Stewart return (NULL); 1169f8829a4aSRandall Stewart } 1170f8829a4aSRandall Stewart 1171f8829a4aSRandall Stewart /* 1172f8829a4aSRandall Stewart * process an SCTP_ERROR_CAUSE_IND for a ASCONF-ACK parameter and do 1173f8829a4aSRandall Stewart * notifications based on the error response 1174f8829a4aSRandall Stewart */ 1175f8829a4aSRandall Stewart static void 1176f8829a4aSRandall Stewart sctp_asconf_process_error(struct sctp_tcb *stcb, 1177f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph) 1178f8829a4aSRandall Stewart { 1179f8829a4aSRandall Stewart struct sctp_error_cause *eh; 1180f8829a4aSRandall Stewart struct sctp_paramhdr *ph; 1181f8829a4aSRandall Stewart uint16_t param_type; 1182f8829a4aSRandall Stewart uint16_t error_code; 1183f8829a4aSRandall Stewart 1184f8829a4aSRandall Stewart eh = (struct sctp_error_cause *)(aph + 1); 1185f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)(eh + 1); 1186f8829a4aSRandall Stewart /* validate lengths */ 1187f8829a4aSRandall Stewart if (htons(eh->length) + sizeof(struct sctp_error_cause) > 1188f8829a4aSRandall Stewart htons(aph->ph.param_length)) { 1189f8829a4aSRandall Stewart /* invalid error cause length */ 1190ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1191ad81507eSRandall Stewart "asconf_process_error: cause element too long\n"); 1192f8829a4aSRandall Stewart return; 1193f8829a4aSRandall Stewart } 1194f8829a4aSRandall Stewart if (htons(ph->param_length) + sizeof(struct sctp_paramhdr) > 1195f8829a4aSRandall Stewart htons(eh->length)) { 1196f8829a4aSRandall Stewart /* invalid included TLV length */ 1197ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1198ad81507eSRandall Stewart "asconf_process_error: included TLV too long\n"); 1199f8829a4aSRandall Stewart return; 1200f8829a4aSRandall Stewart } 1201f8829a4aSRandall Stewart /* which error code ? */ 1202f8829a4aSRandall Stewart error_code = ntohs(eh->code); 1203f8829a4aSRandall Stewart param_type = ntohs(aph->ph.param_type); 1204f8829a4aSRandall Stewart /* FIX: this should go back up the REMOTE_ERROR ULP notify */ 1205f8829a4aSRandall Stewart switch (error_code) { 1206f8829a4aSRandall Stewart case SCTP_CAUSE_RESOURCE_SHORTAGE: 1207f8829a4aSRandall Stewart /* we allow ourselves to "try again" for this error */ 1208f8829a4aSRandall Stewart break; 1209f8829a4aSRandall Stewart default: 1210f8829a4aSRandall Stewart /* peer can't handle it... */ 1211f8829a4aSRandall Stewart switch (param_type) { 1212f8829a4aSRandall Stewart case SCTP_ADD_IP_ADDRESS: 1213f8829a4aSRandall Stewart case SCTP_DEL_IP_ADDRESS: 1214f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1215f8829a4aSRandall Stewart break; 1216f8829a4aSRandall Stewart case SCTP_SET_PRIM_ADDR: 1217f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1218f8829a4aSRandall Stewart break; 1219f8829a4aSRandall Stewart default: 1220f8829a4aSRandall Stewart break; 1221f8829a4aSRandall Stewart } 1222f8829a4aSRandall Stewart } 1223f8829a4aSRandall Stewart } 1224f8829a4aSRandall Stewart 1225f8829a4aSRandall Stewart /* 1226f8829a4aSRandall Stewart * process an asconf queue param aparam: parameter to process, will be 1227f8829a4aSRandall Stewart * removed from the queue flag: 1=success, 0=failure 1228f8829a4aSRandall Stewart */ 1229f8829a4aSRandall Stewart static void 1230f8829a4aSRandall Stewart sctp_asconf_process_param_ack(struct sctp_tcb *stcb, 1231f8829a4aSRandall Stewart struct sctp_asconf_addr *aparam, uint32_t flag) 1232f8829a4aSRandall Stewart { 1233f8829a4aSRandall Stewart uint16_t param_type; 1234f8829a4aSRandall Stewart 1235f8829a4aSRandall Stewart /* process this param */ 1236f8829a4aSRandall Stewart param_type = aparam->ap.aph.ph.param_type; 1237f8829a4aSRandall Stewart switch (param_type) { 1238f8829a4aSRandall Stewart case SCTP_ADD_IP_ADDRESS: 1239ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1240ad81507eSRandall Stewart "process_param_ack: added IP address\n"); 1241f8829a4aSRandall Stewart sctp_asconf_addr_mgmt_ack(stcb, aparam->ifa, param_type, flag); 1242f8829a4aSRandall Stewart break; 1243f8829a4aSRandall Stewart case SCTP_DEL_IP_ADDRESS: 1244ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1245ad81507eSRandall Stewart "process_param_ack: deleted IP address\n"); 1246f8829a4aSRandall Stewart /* nothing really to do... lists already updated */ 1247f8829a4aSRandall Stewart break; 1248f8829a4aSRandall Stewart case SCTP_SET_PRIM_ADDR: 1249f8829a4aSRandall Stewart /* nothing to do... peer may start using this addr */ 1250f8829a4aSRandall Stewart if (flag == 0) 1251f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1252f8829a4aSRandall Stewart break; 1253f8829a4aSRandall Stewart default: 1254f8829a4aSRandall Stewart /* should NEVER happen */ 1255f8829a4aSRandall Stewart break; 1256f8829a4aSRandall Stewart } 1257f8829a4aSRandall Stewart 1258f8829a4aSRandall Stewart /* remove the param and free it */ 1259f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aparam, next); 1260bff64a4dSRandall Stewart sctp_free_ifa(aparam->ifa); 1261207304d4SRandall Stewart SCTP_FREE(aparam, SCTP_M_ASC_ADDR); 1262f8829a4aSRandall Stewart } 1263f8829a4aSRandall Stewart 1264f8829a4aSRandall Stewart /* 1265f8829a4aSRandall Stewart * cleanup from a bad asconf ack parameter 1266f8829a4aSRandall Stewart */ 1267f8829a4aSRandall Stewart static void 1268f8829a4aSRandall Stewart sctp_asconf_ack_clear(struct sctp_tcb *stcb) 1269f8829a4aSRandall Stewart { 1270f8829a4aSRandall Stewart /* assume peer doesn't really know how to do asconfs */ 1271f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1272f8829a4aSRandall Stewart /* XXX we could free the pending queue here */ 1273f8829a4aSRandall Stewart } 1274f8829a4aSRandall Stewart 1275f8829a4aSRandall Stewart void 1276f8829a4aSRandall Stewart sctp_handle_asconf_ack(struct mbuf *m, int offset, 1277f8829a4aSRandall Stewart struct sctp_asconf_ack_chunk *cp, struct sctp_tcb *stcb, 1278f8829a4aSRandall Stewart struct sctp_nets *net) 1279f8829a4aSRandall Stewart { 1280f8829a4aSRandall Stewart struct sctp_association *asoc; 1281f8829a4aSRandall Stewart uint32_t serial_num; 1282f8829a4aSRandall Stewart uint16_t ack_length; 1283f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 1284f8829a4aSRandall Stewart struct sctp_asconf_addr *aa, *aa_next; 1285f8829a4aSRandall Stewart uint32_t last_error_id = 0; /* last error correlation id */ 1286f8829a4aSRandall Stewart uint32_t id; 1287f8829a4aSRandall Stewart struct sctp_asconf_addr *ap; 1288f8829a4aSRandall Stewart 1289f8829a4aSRandall Stewart /* asconf param buffer */ 1290f42a358aSRandall Stewart uint8_t aparam_buf[SCTP_PARAM_BUFFER_SIZE]; 1291f8829a4aSRandall Stewart 1292f8829a4aSRandall Stewart /* verify minimum length */ 1293f8829a4aSRandall Stewart if (ntohs(cp->ch.chunk_length) < sizeof(struct sctp_asconf_ack_chunk)) { 1294ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1295ad81507eSRandall Stewart "handle_asconf_ack: chunk too small = %xh\n", 1296f8829a4aSRandall Stewart ntohs(cp->ch.chunk_length)); 1297f8829a4aSRandall Stewart return; 1298f8829a4aSRandall Stewart } 1299f8829a4aSRandall Stewart asoc = &stcb->asoc; 1300f8829a4aSRandall Stewart serial_num = ntohl(cp->serial_number); 1301f8829a4aSRandall Stewart 1302f8829a4aSRandall Stewart /* 1303f8829a4aSRandall Stewart * NOTE: we may want to handle this differently- currently, we will 1304f8829a4aSRandall Stewart * abort when we get an ack for the expected serial number + 1 (eg. 1305f8829a4aSRandall Stewart * we didn't send it), process an ack normally if it is the expected 1306f8829a4aSRandall Stewart * serial number, and re-send the previous ack for *ALL* other 1307f8829a4aSRandall Stewart * serial numbers 1308f8829a4aSRandall Stewart */ 1309f8829a4aSRandall Stewart 1310f8829a4aSRandall Stewart /* 1311f8829a4aSRandall Stewart * if the serial number is the next expected, but I didn't send it, 1312f8829a4aSRandall Stewart * abort the asoc, since someone probably just hijacked us... 1313f8829a4aSRandall Stewart */ 1314f8829a4aSRandall Stewart if (serial_num == (asoc->asconf_seq_out + 1)) { 1315ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf_ack: got unexpected next serial number! Aborting asoc!\n"); 1316f8829a4aSRandall Stewart sctp_abort_an_association(stcb->sctp_ep, stcb, 1317f8829a4aSRandall Stewart SCTP_CAUSE_ILLEGAL_ASCONF_ACK, NULL); 1318f8829a4aSRandall Stewart return; 1319f8829a4aSRandall Stewart } 1320f8829a4aSRandall Stewart if (serial_num != asoc->asconf_seq_out) { 1321f8829a4aSRandall Stewart /* got a duplicate/unexpected ASCONF-ACK */ 1322ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf_ack: got duplicate/unexpected serial number = %xh (expected = %xh)\n", 1323ad81507eSRandall Stewart serial_num, asoc->asconf_seq_out); 1324f8829a4aSRandall Stewart return; 1325f8829a4aSRandall Stewart } 1326f8829a4aSRandall Stewart if (stcb->asoc.asconf_sent == 0) { 1327f8829a4aSRandall Stewart /* got a unexpected ASCONF-ACK for serial not in flight */ 1328ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf_ack: got serial number = %xh but not in flight\n", 1329ad81507eSRandall Stewart serial_num); 1330f8829a4aSRandall Stewart /* nothing to do... duplicate ACK received */ 1331f8829a4aSRandall Stewart return; 1332f8829a4aSRandall Stewart } 1333f8829a4aSRandall Stewart /* stop our timer */ 13343c503c28SRandall Stewart sctp_timer_stop(SCTP_TIMER_TYPE_ASCONF, stcb->sctp_ep, stcb, net, 13353c503c28SRandall Stewart SCTP_FROM_SCTP_ASCONF + SCTP_LOC_3); 1336f8829a4aSRandall Stewart 1337f8829a4aSRandall Stewart /* process the ASCONF-ACK contents */ 1338f8829a4aSRandall Stewart ack_length = ntohs(cp->ch.chunk_length) - 1339f8829a4aSRandall Stewart sizeof(struct sctp_asconf_ack_chunk); 1340f8829a4aSRandall Stewart offset += sizeof(struct sctp_asconf_ack_chunk); 1341f8829a4aSRandall Stewart /* process through all parameters */ 1342f8829a4aSRandall Stewart while (ack_length >= sizeof(struct sctp_asconf_paramhdr)) { 1343f8829a4aSRandall Stewart unsigned int param_length, param_type; 1344f8829a4aSRandall Stewart 1345f8829a4aSRandall Stewart /* get pointer to next asconf parameter */ 1346f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, 1347f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr), aparam_buf); 1348f8829a4aSRandall Stewart if (aph == NULL) { 1349f8829a4aSRandall Stewart /* can't get an asconf paramhdr */ 1350f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1351f8829a4aSRandall Stewart return; 1352f8829a4aSRandall Stewart } 1353f8829a4aSRandall Stewart param_type = ntohs(aph->ph.param_type); 1354f8829a4aSRandall Stewart param_length = ntohs(aph->ph.param_length); 1355f8829a4aSRandall Stewart if (param_length > ack_length) { 1356f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1357f8829a4aSRandall Stewart return; 1358f8829a4aSRandall Stewart } 1359f8829a4aSRandall Stewart if (param_length < sizeof(struct sctp_paramhdr)) { 1360f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1361f8829a4aSRandall Stewart return; 1362f8829a4aSRandall Stewart } 1363f8829a4aSRandall Stewart /* get the complete parameter... */ 1364f8829a4aSRandall Stewart if (param_length > sizeof(aparam_buf)) { 1365ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1366ad81507eSRandall Stewart "param length (%u) larger than buffer size!\n", param_length); 1367f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1368f8829a4aSRandall Stewart return; 1369f8829a4aSRandall Stewart } 1370f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, param_length, aparam_buf); 1371f8829a4aSRandall Stewart if (aph == NULL) { 1372f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1373f8829a4aSRandall Stewart return; 1374f8829a4aSRandall Stewart } 1375f8829a4aSRandall Stewart /* correlation_id is transparent to peer, no ntohl needed */ 1376f8829a4aSRandall Stewart id = aph->correlation_id; 1377f8829a4aSRandall Stewart 1378f8829a4aSRandall Stewart switch (param_type) { 1379f8829a4aSRandall Stewart case SCTP_ERROR_CAUSE_IND: 1380f8829a4aSRandall Stewart last_error_id = id; 1381f8829a4aSRandall Stewart /* find the corresponding asconf param in our queue */ 1382f8829a4aSRandall Stewart ap = sctp_asconf_find_param(stcb, id); 1383f8829a4aSRandall Stewart if (ap == NULL) { 1384f8829a4aSRandall Stewart /* hmm... can't find this in our queue! */ 1385f8829a4aSRandall Stewart break; 1386f8829a4aSRandall Stewart } 1387f8829a4aSRandall Stewart /* process the parameter, failed flag */ 1388f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, ap, 0); 1389f8829a4aSRandall Stewart /* process the error response */ 1390f8829a4aSRandall Stewart sctp_asconf_process_error(stcb, aph); 1391f8829a4aSRandall Stewart break; 1392f8829a4aSRandall Stewart case SCTP_SUCCESS_REPORT: 1393f8829a4aSRandall Stewart /* find the corresponding asconf param in our queue */ 1394f8829a4aSRandall Stewart ap = sctp_asconf_find_param(stcb, id); 1395f8829a4aSRandall Stewart if (ap == NULL) { 1396f8829a4aSRandall Stewart /* hmm... can't find this in our queue! */ 1397f8829a4aSRandall Stewart break; 1398f8829a4aSRandall Stewart } 1399f8829a4aSRandall Stewart /* process the parameter, success flag */ 1400f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, ap, 1); 1401f8829a4aSRandall Stewart break; 1402f8829a4aSRandall Stewart default: 1403f8829a4aSRandall Stewart break; 1404f8829a4aSRandall Stewart } /* switch */ 1405f8829a4aSRandall Stewart 1406f8829a4aSRandall Stewart /* update remaining ASCONF-ACK message length to process */ 1407f8829a4aSRandall Stewart ack_length -= SCTP_SIZE32(param_length); 1408f8829a4aSRandall Stewart if (ack_length <= 0) { 1409f8829a4aSRandall Stewart /* no more data in the mbuf chain */ 1410f8829a4aSRandall Stewart break; 1411f8829a4aSRandall Stewart } 1412f8829a4aSRandall Stewart offset += SCTP_SIZE32(param_length); 1413f8829a4aSRandall Stewart } /* while */ 1414f8829a4aSRandall Stewart 1415f8829a4aSRandall Stewart /* 1416f8829a4aSRandall Stewart * if there are any "sent" params still on the queue, these are 1417f8829a4aSRandall Stewart * implicitly "success", or "failed" (if we got an error back) ... 1418f8829a4aSRandall Stewart * so process these appropriately 1419f8829a4aSRandall Stewart * 1420f8829a4aSRandall Stewart * we assume that the correlation_id's are monotonically increasing 1421f8829a4aSRandall Stewart * beginning from 1 and that we don't have *that* many outstanding 1422f8829a4aSRandall Stewart * at any given time 1423f8829a4aSRandall Stewart */ 1424f8829a4aSRandall Stewart if (last_error_id == 0) 1425f8829a4aSRandall Stewart last_error_id--;/* set to "max" value */ 1426f8829a4aSRandall Stewart for (aa = TAILQ_FIRST(&stcb->asoc.asconf_queue); aa != NULL; 1427f8829a4aSRandall Stewart aa = aa_next) { 1428f8829a4aSRandall Stewart aa_next = TAILQ_NEXT(aa, next); 1429f8829a4aSRandall Stewart if (aa->sent == 1) { 1430f8829a4aSRandall Stewart /* 1431f8829a4aSRandall Stewart * implicitly successful or failed if correlation_id 1432f8829a4aSRandall Stewart * < last_error_id, then success else, failure 1433f8829a4aSRandall Stewart */ 1434f8829a4aSRandall Stewart if (aa->ap.aph.correlation_id < last_error_id) 1435f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, aa, 1436f8829a4aSRandall Stewart SCTP_SUCCESS_REPORT); 1437f8829a4aSRandall Stewart else 1438f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, aa, 1439f8829a4aSRandall Stewart SCTP_ERROR_CAUSE_IND); 1440f8829a4aSRandall Stewart } else { 1441f8829a4aSRandall Stewart /* 1442f8829a4aSRandall Stewart * since we always process in order (FIFO queue) if 1443f8829a4aSRandall Stewart * we reach one that hasn't been sent, the rest 1444f8829a4aSRandall Stewart * should not have been sent either. so, we're 1445f8829a4aSRandall Stewart * done... 1446f8829a4aSRandall Stewart */ 1447f8829a4aSRandall Stewart break; 1448f8829a4aSRandall Stewart } 1449f8829a4aSRandall Stewart } 1450f8829a4aSRandall Stewart 1451f8829a4aSRandall Stewart /* update the next sequence number to use */ 1452f8829a4aSRandall Stewart asoc->asconf_seq_out++; 1453f8829a4aSRandall Stewart /* remove the old ASCONF on our outbound queue */ 1454f8829a4aSRandall Stewart sctp_toss_old_asconf(stcb); 1455f8829a4aSRandall Stewart /* clear the sent flag to allow new ASCONFs */ 1456f8829a4aSRandall Stewart asoc->asconf_sent = 0; 1457f8829a4aSRandall Stewart if (!TAILQ_EMPTY(&stcb->asoc.asconf_queue)) { 1458f8829a4aSRandall Stewart /* we have more params, so restart our timer */ 1459f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, stcb->sctp_ep, 1460f8829a4aSRandall Stewart stcb, net); 1461f8829a4aSRandall Stewart } 1462f8829a4aSRandall Stewart } 1463f8829a4aSRandall Stewart 1464f8829a4aSRandall Stewart static uint32_t 1465f8829a4aSRandall Stewart sctp_is_scopeid_in_nets(struct sctp_tcb *stcb, struct sockaddr *sa) 1466f8829a4aSRandall Stewart { 1467f8829a4aSRandall Stewart struct sockaddr_in6 *sin6, *net6; 1468f8829a4aSRandall Stewart struct sctp_nets *net; 1469f8829a4aSRandall Stewart 1470f8829a4aSRandall Stewart if (sa->sa_family != AF_INET6) { 1471f8829a4aSRandall Stewart /* wrong family */ 1472f8829a4aSRandall Stewart return (0); 1473f8829a4aSRandall Stewart } 1474f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 1475f8829a4aSRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr) == 0) { 1476f8829a4aSRandall Stewart /* not link local address */ 1477f8829a4aSRandall Stewart return (0); 1478f8829a4aSRandall Stewart } 1479f8829a4aSRandall Stewart /* hunt through our destination nets list for this scope_id */ 1480f8829a4aSRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 1481f8829a4aSRandall Stewart if (((struct sockaddr *)(&net->ro._l_addr))->sa_family != 1482f8829a4aSRandall Stewart AF_INET6) 1483f8829a4aSRandall Stewart continue; 1484f8829a4aSRandall Stewart net6 = (struct sockaddr_in6 *)&net->ro._l_addr; 1485f8829a4aSRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&net6->sin6_addr) == 0) 1486f8829a4aSRandall Stewart continue; 1487f8829a4aSRandall Stewart if (sctp_is_same_scope(sin6, net6)) { 1488f8829a4aSRandall Stewart /* found one */ 1489f8829a4aSRandall Stewart return (1); 1490f8829a4aSRandall Stewart } 1491f8829a4aSRandall Stewart } 1492f8829a4aSRandall Stewart /* didn't find one */ 1493f8829a4aSRandall Stewart return (0); 1494f8829a4aSRandall Stewart } 1495f8829a4aSRandall Stewart 1496f8829a4aSRandall Stewart /* 1497f8829a4aSRandall Stewart * address management functions 1498f8829a4aSRandall Stewart */ 1499f8829a4aSRandall Stewart static void 1500f8829a4aSRandall Stewart sctp_addr_mgmt_assoc(struct sctp_inpcb *inp, struct sctp_tcb *stcb, 150142551e99SRandall Stewart struct sctp_ifa *ifa, uint16_t type) 1502f8829a4aSRandall Stewart { 1503f8829a4aSRandall Stewart int status; 1504f8829a4aSRandall Stewart 1505f8829a4aSRandall Stewart 1506f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) == 0 && 1507f8829a4aSRandall Stewart sctp_is_feature_off(inp, SCTP_PCB_FLAGS_DO_ASCONF)) { 1508f8829a4aSRandall Stewart /* subset bound, no ASCONF allowed case, so ignore */ 1509f8829a4aSRandall Stewart return; 1510f8829a4aSRandall Stewart } 1511f8829a4aSRandall Stewart /* 1512f8829a4aSRandall Stewart * note: we know this is not the subset bound, no ASCONF case eg. 1513f8829a4aSRandall Stewart * this is boundall or subset bound w/ASCONF allowed 1514f8829a4aSRandall Stewart */ 1515f8829a4aSRandall Stewart 1516f8829a4aSRandall Stewart /* first, make sure it's a good address family */ 151742551e99SRandall Stewart if (ifa->address.sa.sa_family != AF_INET6 && 151842551e99SRandall Stewart ifa->address.sa.sa_family != AF_INET) { 1519f8829a4aSRandall Stewart return; 1520f8829a4aSRandall Stewart } 1521f8829a4aSRandall Stewart /* make sure we're "allowed" to add this type of addr */ 152242551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1523f8829a4aSRandall Stewart /* invalid if we're not a v6 endpoint */ 1524f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) == 0) 1525f8829a4aSRandall Stewart return; 1526f8829a4aSRandall Stewart /* is the v6 addr really valid ? */ 152742551e99SRandall Stewart if (ifa->localifa_flags & SCTP_ADDR_IFA_UNUSEABLE) { 1528f8829a4aSRandall Stewart return; 1529f8829a4aSRandall Stewart } 1530f8829a4aSRandall Stewart } 1531f8829a4aSRandall Stewart /* put this address on the "pending/do not use yet" list */ 1532f8829a4aSRandall Stewart /* 1533f8829a4aSRandall Stewart * Note: we do this primarily for the subset bind case We don't have 1534f8829a4aSRandall Stewart * scoping flags at the EP level, so we must add link local/site 1535f8829a4aSRandall Stewart * local addresses to the EP, then need to "negate" them here. 1536f8829a4aSRandall Stewart * Recall that this routine is only called for the subset bound 1537f8829a4aSRandall Stewart * w/ASCONF allowed case. 1538f8829a4aSRandall Stewart */ 153942551e99SRandall Stewart sctp_add_local_addr_assoc(stcb, ifa, 1); 1540f8829a4aSRandall Stewart /* 1541f8829a4aSRandall Stewart * check address scope if address is out of scope, don't queue 1542f8829a4aSRandall Stewart * anything... note: this would leave the address on both inp and 1543f8829a4aSRandall Stewart * asoc lists 1544f8829a4aSRandall Stewart */ 154542551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1546f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 1547f8829a4aSRandall Stewart 154842551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&ifa->address.sin6; 1549f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 1550f8829a4aSRandall Stewart /* we skip unspecifed addresses */ 1551f8829a4aSRandall Stewart return; 1552f8829a4aSRandall Stewart } 1553f8829a4aSRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) { 1554f8829a4aSRandall Stewart if (stcb->asoc.local_scope == 0) { 1555f8829a4aSRandall Stewart return; 1556f8829a4aSRandall Stewart } 1557f8829a4aSRandall Stewart /* is it the right link local scope? */ 155842551e99SRandall Stewart if (sctp_is_scopeid_in_nets(stcb, &ifa->address.sa) == 0) { 1559f8829a4aSRandall Stewart return; 1560f8829a4aSRandall Stewart } 1561f8829a4aSRandall Stewart } 1562f8829a4aSRandall Stewart if (stcb->asoc.site_scope == 0 && 1563f8829a4aSRandall Stewart IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)) { 1564f8829a4aSRandall Stewart return; 1565f8829a4aSRandall Stewart } 156642551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 1567f8829a4aSRandall Stewart struct sockaddr_in *sin; 1568f8829a4aSRandall Stewart struct in6pcb *inp6; 1569f8829a4aSRandall Stewart 1570f8829a4aSRandall Stewart inp6 = (struct in6pcb *)&inp->ip_inp.inp; 1571f8829a4aSRandall Stewart /* invalid if we are a v6 only endpoint */ 1572f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 157344b7479bSRandall Stewart SCTP_IPV6_V6ONLY(inp6)) 1574f8829a4aSRandall Stewart return; 1575f8829a4aSRandall Stewart 157642551e99SRandall Stewart sin = (struct sockaddr_in *)&ifa->address.sa; 1577f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == 0) { 1578f8829a4aSRandall Stewart /* we skip unspecifed addresses */ 1579f8829a4aSRandall Stewart return; 1580f8829a4aSRandall Stewart } 1581f8829a4aSRandall Stewart if (stcb->asoc.ipv4_local_scope == 0 && 1582f8829a4aSRandall Stewart IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)) { 1583f8829a4aSRandall Stewart return; 1584f8829a4aSRandall Stewart } 1585f8829a4aSRandall Stewart } else { 1586f8829a4aSRandall Stewart /* else, not AF_INET or AF_INET6, so skip */ 1587f8829a4aSRandall Stewart return; 1588f8829a4aSRandall Stewart } 1589f8829a4aSRandall Stewart 1590f8829a4aSRandall Stewart /* queue an asconf for this address add/delete */ 1591f8829a4aSRandall Stewart if (sctp_is_feature_on(inp, SCTP_PCB_FLAGS_DO_ASCONF)) { 1592f8829a4aSRandall Stewart /* does the peer do asconf? */ 1593f8829a4aSRandall Stewart if (stcb->asoc.peer_supports_asconf) { 1594f8829a4aSRandall Stewart /* queue an asconf for this addr */ 1595f8829a4aSRandall Stewart status = sctp_asconf_queue_add(stcb, ifa, type); 1596f8829a4aSRandall Stewart /* 1597f8829a4aSRandall Stewart * if queued ok, and in correct state, set the 1598f8829a4aSRandall Stewart * ASCONF timer if in non-open state, we will set 1599f8829a4aSRandall Stewart * this timer when the state does go open and do all 1600f8829a4aSRandall Stewart * the asconf's 1601f8829a4aSRandall Stewart */ 1602f8829a4aSRandall Stewart if (status == 0 && 1603f8829a4aSRandall Stewart SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 1604f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, inp, 1605f8829a4aSRandall Stewart stcb, stcb->asoc.primary_destination); 1606f8829a4aSRandall Stewart } 1607f8829a4aSRandall Stewart } 1608f8829a4aSRandall Stewart } 1609f8829a4aSRandall Stewart } 1610f8829a4aSRandall Stewart 161142551e99SRandall Stewart 161242551e99SRandall Stewart int 161342551e99SRandall Stewart sctp_iterator_ep(struct sctp_inpcb *inp, void *ptr, uint32_t val) 1614f8829a4aSRandall Stewart { 161542551e99SRandall Stewart struct sctp_asconf_iterator *asc; 161642551e99SRandall Stewart struct sctp_ifa *ifa; 161742551e99SRandall Stewart struct sctp_laddr *l; 161842551e99SRandall Stewart int type; 161942551e99SRandall Stewart int cnt_invalid = 0; 1620f8829a4aSRandall Stewart 162142551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 162242551e99SRandall Stewart LIST_FOREACH(l, &asc->list_of_work, sctp_nxt_addr) { 162342551e99SRandall Stewart ifa = l->ifa; 162442551e99SRandall Stewart type = l->action; 162542551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1626f8829a4aSRandall Stewart /* invalid if we're not a v6 endpoint */ 1627f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) == 0) { 162842551e99SRandall Stewart cnt_invalid++; 162942551e99SRandall Stewart if (asc->cnt == cnt_invalid) 163042551e99SRandall Stewart return (1); 163142551e99SRandall Stewart else 163242551e99SRandall Stewart continue; 1633f8829a4aSRandall Stewart } 163442551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 1635f8829a4aSRandall Stewart /* invalid if we are a v6 only endpoint */ 1636f8829a4aSRandall Stewart struct in6pcb *inp6; 1637f8829a4aSRandall Stewart 1638f8829a4aSRandall Stewart inp6 = (struct in6pcb *)&inp->ip_inp.inp; 1639f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 164044b7479bSRandall Stewart SCTP_IPV6_V6ONLY(inp6)) { 164142551e99SRandall Stewart cnt_invalid++; 164242551e99SRandall Stewart if (asc->cnt == cnt_invalid) 164342551e99SRandall Stewart return (1); 164442551e99SRandall Stewart else 164542551e99SRandall Stewart continue; 1646f8829a4aSRandall Stewart } 1647f8829a4aSRandall Stewart } else { 1648f8829a4aSRandall Stewart /* invalid address family */ 164942551e99SRandall Stewart cnt_invalid++; 165042551e99SRandall Stewart if (asc->cnt == cnt_invalid) 165142551e99SRandall Stewart return (1); 1652f8829a4aSRandall Stewart else 165342551e99SRandall Stewart continue; 1654f8829a4aSRandall Stewart } 165542551e99SRandall Stewart } 165642551e99SRandall Stewart return (0); 165742551e99SRandall Stewart } 1658f8829a4aSRandall Stewart 165942551e99SRandall Stewart int 166042551e99SRandall Stewart sctp_iterator_ep_end(struct sctp_inpcb *inp, void *ptr, uint32_t val) 166142551e99SRandall Stewart { 166242551e99SRandall Stewart struct sctp_ifa *ifa; 166342551e99SRandall Stewart struct sctp_asconf_iterator *asc; 166442551e99SRandall Stewart struct sctp_laddr *laddr, *nladdr, *l; 166542551e99SRandall Stewart 166642551e99SRandall Stewart /* Only for specific case not bound all */ 166742551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 166842551e99SRandall Stewart LIST_FOREACH(l, &asc->list_of_work, sctp_nxt_addr) { 166942551e99SRandall Stewart ifa = l->ifa; 167042551e99SRandall Stewart if (l->action == SCTP_ADD_IP_ADDRESS) { 16713c503c28SRandall Stewart LIST_FOREACH(laddr, &inp->sctp_addr_list, 16723c503c28SRandall Stewart sctp_nxt_addr) { 167342551e99SRandall Stewart if (laddr->ifa == ifa) { 167442551e99SRandall Stewart laddr->action = 0; 167542551e99SRandall Stewart break; 167642551e99SRandall Stewart } 167742551e99SRandall Stewart } 167842551e99SRandall Stewart } else if (l->action == SCTP_DEL_IP_ADDRESS) { 167942551e99SRandall Stewart laddr = LIST_FIRST(&inp->sctp_addr_list); 168042551e99SRandall Stewart while (laddr) { 168142551e99SRandall Stewart nladdr = LIST_NEXT(laddr, sctp_nxt_addr); 168242551e99SRandall Stewart /* remove only after all guys are done */ 168342551e99SRandall Stewart if (laddr->ifa == ifa) { 168442551e99SRandall Stewart sctp_del_local_addr_ep(inp, ifa); 168542551e99SRandall Stewart } 168642551e99SRandall Stewart laddr = nladdr; 168742551e99SRandall Stewart } 168842551e99SRandall Stewart } 168942551e99SRandall Stewart } 169042551e99SRandall Stewart return (0); 169142551e99SRandall Stewart } 169242551e99SRandall Stewart 169342551e99SRandall Stewart void 169442551e99SRandall Stewart sctp_iterator_stcb(struct sctp_inpcb *inp, struct sctp_tcb *stcb, void *ptr, 169542551e99SRandall Stewart uint32_t val) 169642551e99SRandall Stewart { 169742551e99SRandall Stewart struct sctp_asconf_iterator *asc; 169842551e99SRandall Stewart struct sctp_ifa *ifa; 169942551e99SRandall Stewart struct sctp_laddr *l; 170042551e99SRandall Stewart int cnt_invalid = 0; 170142551e99SRandall Stewart int type, status; 170242551e99SRandall Stewart 170342551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 170442551e99SRandall Stewart LIST_FOREACH(l, &asc->list_of_work, sctp_nxt_addr) { 170542551e99SRandall Stewart ifa = l->ifa; 170642551e99SRandall Stewart type = l->action; 170722a67197SRandall Stewart 170822a67197SRandall Stewart /* address's vrf_id must be the vrf_id of the assoc */ 170922a67197SRandall Stewart if (ifa->vrf_id != stcb->asoc.vrf_id) { 171022a67197SRandall Stewart continue; 171122a67197SRandall Stewart } 171242551e99SRandall Stewart /* Same checks again for assoc */ 171342551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 171442551e99SRandall Stewart /* invalid if we're not a v6 endpoint */ 171542551e99SRandall Stewart struct sockaddr_in6 *sin6; 171642551e99SRandall Stewart 171742551e99SRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) == 0) { 171842551e99SRandall Stewart cnt_invalid++; 171942551e99SRandall Stewart if (asc->cnt == cnt_invalid) 172042551e99SRandall Stewart return; 172142551e99SRandall Stewart else 172242551e99SRandall Stewart continue; 172342551e99SRandall Stewart } 172442551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&ifa->address.sin6; 172542551e99SRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 172642551e99SRandall Stewart /* we skip unspecifed addresses */ 172742551e99SRandall Stewart continue; 172842551e99SRandall Stewart } 172942551e99SRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) { 173042551e99SRandall Stewart if (stcb->asoc.local_scope == 0) { 173142551e99SRandall Stewart continue; 173242551e99SRandall Stewart } 173342551e99SRandall Stewart /* is it the right link local scope? */ 173442551e99SRandall Stewart if (sctp_is_scopeid_in_nets(stcb, &ifa->address.sa) == 0) { 173542551e99SRandall Stewart continue; 173642551e99SRandall Stewart } 173742551e99SRandall Stewart } 173842551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 173942551e99SRandall Stewart /* invalid if we are a v6 only endpoint */ 174042551e99SRandall Stewart struct in6pcb *inp6; 174142551e99SRandall Stewart struct sockaddr_in *sin; 174242551e99SRandall Stewart 174342551e99SRandall Stewart inp6 = (struct in6pcb *)&inp->ip_inp.inp; 174442551e99SRandall Stewart /* invalid if we are a v6 only endpoint */ 174542551e99SRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 174642551e99SRandall Stewart SCTP_IPV6_V6ONLY(inp6)) 174742551e99SRandall Stewart continue; 174842551e99SRandall Stewart 174942551e99SRandall Stewart sin = (struct sockaddr_in *)&ifa->address.sa; 175042551e99SRandall Stewart if (sin->sin_addr.s_addr == 0) { 175142551e99SRandall Stewart /* we skip unspecifed addresses */ 175242551e99SRandall Stewart continue; 175342551e99SRandall Stewart } 175442551e99SRandall Stewart if (stcb->asoc.ipv4_local_scope == 0 && 175542551e99SRandall Stewart IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)) { 175642551e99SRandall Stewart continue;; 175742551e99SRandall Stewart } 175842551e99SRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 175942551e99SRandall Stewart SCTP_IPV6_V6ONLY(inp6)) { 176042551e99SRandall Stewart cnt_invalid++; 176142551e99SRandall Stewart if (asc->cnt == cnt_invalid) 176242551e99SRandall Stewart return; 176342551e99SRandall Stewart else 176442551e99SRandall Stewart continue; 176542551e99SRandall Stewart } 1766f8829a4aSRandall Stewart } else { 176742551e99SRandall Stewart /* invalid address family */ 176842551e99SRandall Stewart cnt_invalid++; 176942551e99SRandall Stewart if (asc->cnt == cnt_invalid) 1770f8829a4aSRandall Stewart return; 177142551e99SRandall Stewart else 177242551e99SRandall Stewart continue; 1773f8829a4aSRandall Stewart } 1774f8829a4aSRandall Stewart 177542551e99SRandall Stewart /* put this address on the "pending/do not use yet" list */ 177642551e99SRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 177742551e99SRandall Stewart sctp_add_local_addr_assoc(stcb, ifa, 1); 177842551e99SRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS) { 1779f8829a4aSRandall Stewart struct sctp_nets *net; 1780f8829a4aSRandall Stewart 1781f8829a4aSRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 178217205eccSRandall Stewart sctp_rtentry_t *rt; 1783f8829a4aSRandall Stewart 1784f8829a4aSRandall Stewart /* delete this address if cached */ 178542551e99SRandall Stewart if (net->ro._s_addr && 178642551e99SRandall Stewart (net->ro._s_addr->ifa == ifa)) { 178742551e99SRandall Stewart sctp_free_ifa(net->ro._s_addr); 178842551e99SRandall Stewart net->ro._s_addr = NULL; 178942551e99SRandall Stewart net->src_addr_selected = 0; 1790f8829a4aSRandall Stewart rt = net->ro.ro_rt; 179142551e99SRandall Stewart if (rt) { 179242551e99SRandall Stewart RTFREE(rt); 1793f8829a4aSRandall Stewart net->ro.ro_rt = NULL; 1794f8829a4aSRandall Stewart } 179542551e99SRandall Stewart /* 179642551e99SRandall Stewart * Now we deleted our src address, 179742551e99SRandall Stewart * should we not also now reset the 179842551e99SRandall Stewart * cwnd/rto to start as if its a new 179942551e99SRandall Stewart * address? 180042551e99SRandall Stewart */ 180142551e99SRandall Stewart sctp_set_initial_cc_param(stcb, net); 1802108df27cSRandall Stewart net->RTO = 0; 180342551e99SRandall Stewart 1804f8829a4aSRandall Stewart } 1805f8829a4aSRandall Stewart } 180642551e99SRandall Stewart } else if (type == SCTP_SET_PRIM_ADDR) { 180742551e99SRandall Stewart if ((stcb->sctp_ep->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) == 0) { 180842551e99SRandall Stewart /* 180942551e99SRandall Stewart * must validate the ifa in question is in 181042551e99SRandall Stewart * the ep 181142551e99SRandall Stewart */ 181242551e99SRandall Stewart if (sctp_is_addr_in_ep(stcb->sctp_ep, ifa) == 0) { 181342551e99SRandall Stewart continue; 1814f8829a4aSRandall Stewart } 181542551e99SRandall Stewart } else { 181642551e99SRandall Stewart /* Need to check scopes for this guy */ 181742551e99SRandall Stewart if (sctp_is_address_in_scope(ifa, 181842551e99SRandall Stewart stcb->asoc.ipv4_addr_legal, 181942551e99SRandall Stewart stcb->asoc.ipv6_addr_legal, 182042551e99SRandall Stewart stcb->asoc.loopback_scope, 182142551e99SRandall Stewart stcb->asoc.ipv4_local_scope, 182242551e99SRandall Stewart stcb->asoc.local_scope, 182342551e99SRandall Stewart stcb->asoc.site_scope, 0) == 0) { 182442551e99SRandall Stewart continue; 1825f8829a4aSRandall Stewart } 182642551e99SRandall Stewart } 182742551e99SRandall Stewart 182842551e99SRandall Stewart } 182942551e99SRandall Stewart /* queue an asconf for this address add/delete */ 183042551e99SRandall Stewart if (sctp_is_feature_on(inp, SCTP_PCB_FLAGS_DO_ASCONF)) { 183142551e99SRandall Stewart /* does the peer do asconf? */ 183242551e99SRandall Stewart if (stcb->asoc.peer_supports_asconf) { 183342551e99SRandall Stewart /* queue an asconf for this addr */ 183442551e99SRandall Stewart status = sctp_asconf_queue_add(stcb, ifa, type); 183542551e99SRandall Stewart /* 183642551e99SRandall Stewart * if queued ok, and in correct state, set 183742551e99SRandall Stewart * the ASCONF timer if in non-open state, we 183842551e99SRandall Stewart * will set this timer when the state does 183942551e99SRandall Stewart * go open and do all the asconf's 184042551e99SRandall Stewart */ 184142551e99SRandall Stewart if (status == 0 && 184242551e99SRandall Stewart SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 184342551e99SRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, inp, 184442551e99SRandall Stewart stcb, stcb->asoc.primary_destination); 184542551e99SRandall Stewart } 184642551e99SRandall Stewart } 184742551e99SRandall Stewart } 184842551e99SRandall Stewart } 184942551e99SRandall Stewart } 185042551e99SRandall Stewart 185142551e99SRandall Stewart void 185242551e99SRandall Stewart sctp_iterator_end(void *ptr, uint32_t val) 185342551e99SRandall Stewart { 185442551e99SRandall Stewart struct sctp_asconf_iterator *asc; 185542551e99SRandall Stewart struct sctp_ifa *ifa; 185642551e99SRandall Stewart struct sctp_laddr *l, *l_next; 185742551e99SRandall Stewart 185842551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 185942551e99SRandall Stewart l = LIST_FIRST(&asc->list_of_work); 186042551e99SRandall Stewart while (l != NULL) { 186142551e99SRandall Stewart l_next = LIST_NEXT(l, sctp_nxt_addr); 186242551e99SRandall Stewart ifa = l->ifa; 186342551e99SRandall Stewart if (l->action == SCTP_ADD_IP_ADDRESS) { 186442551e99SRandall Stewart /* Clear the defer use flag */ 186542551e99SRandall Stewart ifa->localifa_flags &= ~SCTP_ADDR_DEFER_USE; 186642551e99SRandall Stewart } 186742551e99SRandall Stewart sctp_free_ifa(ifa); 186842551e99SRandall Stewart SCTP_ZONE_FREE(sctppcbinfo.ipi_zone_laddr, l); 186942551e99SRandall Stewart SCTP_DECR_LADDR_COUNT(); 187042551e99SRandall Stewart l = l_next; 187142551e99SRandall Stewart } 1872207304d4SRandall Stewart SCTP_FREE(asc, SCTP_M_ASC_IT); 1873f8829a4aSRandall Stewart } 1874f8829a4aSRandall Stewart 1875f8829a4aSRandall Stewart /* 1876f8829a4aSRandall Stewart * sa is the sockaddr to ask the peer to set primary to returns: 0 = 1877f8829a4aSRandall Stewart * completed, -1 = error 1878f8829a4aSRandall Stewart */ 1879f8829a4aSRandall Stewart int32_t 1880f8829a4aSRandall Stewart sctp_set_primary_ip_address_sa(struct sctp_tcb *stcb, struct sockaddr *sa) 1881f8829a4aSRandall Stewart { 1882f8829a4aSRandall Stewart /* NOTE: we currently don't check the validity of the address! */ 1883f8829a4aSRandall Stewart 1884f8829a4aSRandall Stewart /* queue an ASCONF:SET_PRIM_ADDR to be sent */ 1885f8829a4aSRandall Stewart if (!sctp_asconf_queue_add_sa(stcb, sa, SCTP_SET_PRIM_ADDR)) { 1886f8829a4aSRandall Stewart /* set primary queuing succeeded */ 1887f8829a4aSRandall Stewart if (SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 1888f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, 1889f8829a4aSRandall Stewart stcb->sctp_ep, stcb, 1890f8829a4aSRandall Stewart stcb->asoc.primary_destination); 1891f8829a4aSRandall Stewart } 1892ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1893ad81507eSRandall Stewart "set_primary_ip_address_sa: queued on tcb=%p, ", 1894f8829a4aSRandall Stewart stcb); 1895ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 1896f8829a4aSRandall Stewart } else { 1897ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "set_primary_ip_address_sa: failed to add to queue on tcb=%p, ", 1898f8829a4aSRandall Stewart stcb); 1899ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 1900f8829a4aSRandall Stewart return (-1); 1901f8829a4aSRandall Stewart } 1902f8829a4aSRandall Stewart return (0); 1903f8829a4aSRandall Stewart } 1904f8829a4aSRandall Stewart 1905f8829a4aSRandall Stewart void 190642551e99SRandall Stewart sctp_set_primary_ip_address(struct sctp_ifa *ifa) 1907f8829a4aSRandall Stewart { 1908f8829a4aSRandall Stewart struct sctp_inpcb *inp; 1909f8829a4aSRandall Stewart 1910f8829a4aSRandall Stewart /* go through all our PCB's */ 1911f8829a4aSRandall Stewart LIST_FOREACH(inp, &sctppcbinfo.listhead, sctp_list) { 1912f8829a4aSRandall Stewart struct sctp_tcb *stcb; 1913f8829a4aSRandall Stewart 1914f8829a4aSRandall Stewart /* process for all associations for this endpoint */ 1915f8829a4aSRandall Stewart LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) { 1916f8829a4aSRandall Stewart /* queue an ASCONF:SET_PRIM_ADDR to be sent */ 1917f8829a4aSRandall Stewart if (!sctp_asconf_queue_add(stcb, ifa, 1918f8829a4aSRandall Stewart SCTP_SET_PRIM_ADDR)) { 1919f8829a4aSRandall Stewart /* set primary queuing succeeded */ 1920f8829a4aSRandall Stewart if (SCTP_GET_STATE(&stcb->asoc) == 1921f8829a4aSRandall Stewart SCTP_STATE_OPEN) { 1922f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, 1923f8829a4aSRandall Stewart stcb->sctp_ep, stcb, 1924f8829a4aSRandall Stewart stcb->asoc.primary_destination); 1925f8829a4aSRandall Stewart } 1926ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "set_primary_ip_address: queued on stcb=%p, ", 1927f8829a4aSRandall Stewart stcb); 1928ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, &ifa->address.sa); 1929f8829a4aSRandall Stewart } 1930f8829a4aSRandall Stewart } /* for each stcb */ 1931f8829a4aSRandall Stewart } /* for each inp */ 1932f8829a4aSRandall Stewart } 1933f8829a4aSRandall Stewart 1934f8829a4aSRandall Stewart static struct sockaddr * 1935f8829a4aSRandall Stewart sctp_find_valid_localaddr(struct sctp_tcb *stcb) 1936f8829a4aSRandall Stewart { 193742551e99SRandall Stewart struct sctp_vrf *vrf = NULL; 193842551e99SRandall Stewart struct sctp_ifn *sctp_ifn; 193942551e99SRandall Stewart struct sctp_ifa *sctp_ifa; 1940f8829a4aSRandall Stewart 194142551e99SRandall Stewart vrf = sctp_find_vrf(stcb->asoc.vrf_id); 1942ad81507eSRandall Stewart if (vrf == NULL) { 1943ad81507eSRandall Stewart return (NULL); 1944ad81507eSRandall Stewart } 194542551e99SRandall Stewart LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) { 194642551e99SRandall Stewart if (stcb->asoc.loopback_scope == 0 && 194742551e99SRandall Stewart SCTP_IFN_IS_IFT_LOOP(sctp_ifn)) { 1948f8829a4aSRandall Stewart /* Skip if loopback_scope not set */ 1949f8829a4aSRandall Stewart continue; 1950f8829a4aSRandall Stewart } 195142551e99SRandall Stewart LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) { 195242551e99SRandall Stewart if (sctp_ifa->address.sa.sa_family == AF_INET && 1953f8829a4aSRandall Stewart stcb->asoc.ipv4_addr_legal) { 1954f8829a4aSRandall Stewart struct sockaddr_in *sin; 1955f8829a4aSRandall Stewart 195642551e99SRandall Stewart sin = (struct sockaddr_in *)&sctp_ifa->address.sa; 1957f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == 0) { 1958f8829a4aSRandall Stewart /* skip unspecifed addresses */ 1959f8829a4aSRandall Stewart continue; 1960f8829a4aSRandall Stewart } 1961f8829a4aSRandall Stewart if (stcb->asoc.ipv4_local_scope == 0 && 1962f8829a4aSRandall Stewart IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)) 1963f8829a4aSRandall Stewart continue; 1964f8829a4aSRandall Stewart 196542551e99SRandall Stewart if (sctp_is_addr_restricted(stcb, sctp_ifa)) 1966f8829a4aSRandall Stewart continue; 1967f8829a4aSRandall Stewart /* found a valid local v4 address to use */ 196842551e99SRandall Stewart return (&sctp_ifa->address.sa); 196942551e99SRandall Stewart } else if (sctp_ifa->address.sa.sa_family == AF_INET6 && 1970f8829a4aSRandall Stewart stcb->asoc.ipv6_addr_legal) { 1971f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 1972f8829a4aSRandall Stewart 197342551e99SRandall Stewart if (sctp_ifa->localifa_flags & SCTP_ADDR_IFA_UNUSEABLE) { 1974f8829a4aSRandall Stewart continue; 197542551e99SRandall Stewart } 197642551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&sctp_ifa->address.sa; 1977f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 1978f8829a4aSRandall Stewart /* we skip unspecifed addresses */ 1979f8829a4aSRandall Stewart continue; 1980f8829a4aSRandall Stewart } 1981f8829a4aSRandall Stewart if (stcb->asoc.local_scope == 0 && 1982f8829a4aSRandall Stewart IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) 1983f8829a4aSRandall Stewart continue; 1984f8829a4aSRandall Stewart if (stcb->asoc.site_scope == 0 && 1985f8829a4aSRandall Stewart IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)) 1986f8829a4aSRandall Stewart continue; 1987f8829a4aSRandall Stewart 1988f8829a4aSRandall Stewart /* found a valid local v6 address to use */ 198942551e99SRandall Stewart return (&sctp_ifa->address.sa); 1990f8829a4aSRandall Stewart } 1991f8829a4aSRandall Stewart } 1992f8829a4aSRandall Stewart } 1993f8829a4aSRandall Stewart /* no valid addresses found */ 1994f8829a4aSRandall Stewart return (NULL); 1995f8829a4aSRandall Stewart } 1996f8829a4aSRandall Stewart 1997f8829a4aSRandall Stewart static struct sockaddr * 1998f8829a4aSRandall Stewart sctp_find_valid_localaddr_ep(struct sctp_tcb *stcb) 1999f8829a4aSRandall Stewart { 2000f8829a4aSRandall Stewart struct sctp_laddr *laddr; 2001f8829a4aSRandall Stewart 2002f8829a4aSRandall Stewart LIST_FOREACH(laddr, &stcb->sctp_ep->sctp_addr_list, sctp_nxt_addr) { 2003f8829a4aSRandall Stewart if (laddr->ifa == NULL) { 2004f8829a4aSRandall Stewart continue; 2005f8829a4aSRandall Stewart } 200642551e99SRandall Stewart if (laddr->ifa == NULL) { 2007f8829a4aSRandall Stewart continue; 2008f8829a4aSRandall Stewart } 2009f8829a4aSRandall Stewart /* is the address restricted ? */ 201042551e99SRandall Stewart if (sctp_is_addr_restricted(stcb, laddr->ifa)) 2011f8829a4aSRandall Stewart continue; 2012f8829a4aSRandall Stewart 2013f8829a4aSRandall Stewart /* found a valid local address to use */ 201442551e99SRandall Stewart return (&laddr->ifa->address.sa); 2015f8829a4aSRandall Stewart } 2016f8829a4aSRandall Stewart /* no valid addresses found */ 2017f8829a4aSRandall Stewart return (NULL); 2018f8829a4aSRandall Stewart } 2019f8829a4aSRandall Stewart 2020f8829a4aSRandall Stewart /* 2021f8829a4aSRandall Stewart * builds an ASCONF chunk from queued ASCONF params returns NULL on error (no 2022f8829a4aSRandall Stewart * mbuf, no ASCONF params queued, etc) 2023f8829a4aSRandall Stewart */ 2024f8829a4aSRandall Stewart struct mbuf * 2025139bc87fSRandall Stewart sctp_compose_asconf(struct sctp_tcb *stcb, int *retlen) 2026f8829a4aSRandall Stewart { 2027f8829a4aSRandall Stewart struct mbuf *m_asconf, *m_asconf_chk; 2028f8829a4aSRandall Stewart struct sctp_asconf_addr *aa; 2029f8829a4aSRandall Stewart struct sctp_asconf_chunk *acp; 2030f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 2031f8829a4aSRandall Stewart struct sctp_asconf_addr_param *aap; 2032f8829a4aSRandall Stewart uint32_t p_length; 2033f8829a4aSRandall Stewart uint32_t correlation_id = 1; /* 0 is reserved... */ 2034f8829a4aSRandall Stewart caddr_t ptr, lookup_ptr; 2035f8829a4aSRandall Stewart uint8_t lookup_used = 0; 2036f8829a4aSRandall Stewart 2037f8829a4aSRandall Stewart /* are there any asconf params to send? */ 2038f8829a4aSRandall Stewart if (TAILQ_EMPTY(&stcb->asoc.asconf_queue)) { 2039f8829a4aSRandall Stewart return (NULL); 2040f8829a4aSRandall Stewart } 2041f8829a4aSRandall Stewart /* 2042f8829a4aSRandall Stewart * get a chunk header mbuf and a cluster for the asconf params since 2043f8829a4aSRandall Stewart * it's simpler to fill in the asconf chunk header lookup address on 2044f8829a4aSRandall Stewart * the fly 2045f8829a4aSRandall Stewart */ 2046139bc87fSRandall Stewart m_asconf_chk = sctp_get_mbuf_for_msg(sizeof(struct sctp_asconf_chunk), 0, M_DONTWAIT, 1, MT_DATA); 2047f8829a4aSRandall Stewart if (m_asconf_chk == NULL) { 2048f8829a4aSRandall Stewart /* no mbuf's */ 2049ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2050ad81507eSRandall Stewart "compose_asconf: couldn't get chunk mbuf!\n"); 2051f8829a4aSRandall Stewart return (NULL); 2052f8829a4aSRandall Stewart } 2053139bc87fSRandall Stewart m_asconf = sctp_get_mbuf_for_msg(MCLBYTES, 0, M_DONTWAIT, 1, MT_DATA); 2054f8829a4aSRandall Stewart if (m_asconf == NULL) { 2055f8829a4aSRandall Stewart /* no mbuf's */ 2056ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2057ad81507eSRandall Stewart "compose_asconf: couldn't get mbuf!\n"); 2058f8829a4aSRandall Stewart sctp_m_freem(m_asconf_chk); 2059f8829a4aSRandall Stewart return (NULL); 2060f8829a4aSRandall Stewart } 2061139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) = sizeof(struct sctp_asconf_chunk); 2062139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf) = 0; 2063f8829a4aSRandall Stewart acp = mtod(m_asconf_chk, struct sctp_asconf_chunk *); 2064f8829a4aSRandall Stewart bzero(acp, sizeof(struct sctp_asconf_chunk)); 2065f8829a4aSRandall Stewart /* save pointers to lookup address and asconf params */ 2066f8829a4aSRandall Stewart lookup_ptr = (caddr_t)(acp + 1); /* after the header */ 2067f8829a4aSRandall Stewart ptr = mtod(m_asconf, caddr_t); /* beginning of cluster */ 2068f8829a4aSRandall Stewart 2069f8829a4aSRandall Stewart /* fill in chunk header info */ 2070f8829a4aSRandall Stewart acp->ch.chunk_type = SCTP_ASCONF; 2071f8829a4aSRandall Stewart acp->ch.chunk_flags = 0; 2072f8829a4aSRandall Stewart acp->serial_number = htonl(stcb->asoc.asconf_seq_out); 2073f8829a4aSRandall Stewart 2074f8829a4aSRandall Stewart /* add parameters... up to smallest MTU allowed */ 2075f8829a4aSRandall Stewart TAILQ_FOREACH(aa, &stcb->asoc.asconf_queue, next) { 2076f8829a4aSRandall Stewart /* get the parameter length */ 2077f8829a4aSRandall Stewart p_length = SCTP_SIZE32(aa->ap.aph.ph.param_length); 2078f8829a4aSRandall Stewart /* will it fit in current chunk? */ 2079139bc87fSRandall Stewart if (SCTP_BUF_LEN(m_asconf) + p_length > stcb->asoc.smallest_mtu) { 2080f8829a4aSRandall Stewart /* won't fit, so we're done with this chunk */ 2081f8829a4aSRandall Stewart break; 2082f8829a4aSRandall Stewart } 2083f8829a4aSRandall Stewart /* assign (and store) a correlation id */ 2084f8829a4aSRandall Stewart aa->ap.aph.correlation_id = correlation_id++; 2085f8829a4aSRandall Stewart 2086f8829a4aSRandall Stewart /* 2087f8829a4aSRandall Stewart * fill in address if we're doing a delete this is a simple 2088f8829a4aSRandall Stewart * way for us to fill in the correlation address, which 2089f8829a4aSRandall Stewart * should only be used by the peer if we're deleting our 2090f8829a4aSRandall Stewart * source address and adding a new address (e.g. renumbering 2091f8829a4aSRandall Stewart * case) 2092f8829a4aSRandall Stewart */ 2093f8829a4aSRandall Stewart if (lookup_used == 0 && 2094f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_DEL_IP_ADDRESS) { 2095f8829a4aSRandall Stewart struct sctp_ipv6addr_param *lookup; 2096f8829a4aSRandall Stewart uint16_t p_size, addr_size; 2097f8829a4aSRandall Stewart 2098f8829a4aSRandall Stewart lookup = (struct sctp_ipv6addr_param *)lookup_ptr; 2099f8829a4aSRandall Stewart lookup->ph.param_type = 2100f8829a4aSRandall Stewart htons(aa->ap.addrp.ph.param_type); 2101f8829a4aSRandall Stewart if (aa->ap.addrp.ph.param_type == SCTP_IPV6_ADDRESS) { 2102f8829a4aSRandall Stewart /* copy IPv6 address */ 2103f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv6addr_param); 2104f8829a4aSRandall Stewart addr_size = sizeof(struct in6_addr); 2105f8829a4aSRandall Stewart } else { 2106f8829a4aSRandall Stewart /* copy IPv4 address */ 2107f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv4addr_param); 2108f8829a4aSRandall Stewart addr_size = sizeof(struct in_addr); 2109f8829a4aSRandall Stewart } 2110f8829a4aSRandall Stewart lookup->ph.param_length = htons(SCTP_SIZE32(p_size)); 2111f8829a4aSRandall Stewart memcpy(lookup->addr, &aa->ap.addrp.addr, addr_size); 2112139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) += SCTP_SIZE32(p_size); 2113f8829a4aSRandall Stewart lookup_used = 1; 2114f8829a4aSRandall Stewart } 2115f8829a4aSRandall Stewart /* copy into current space */ 2116f8829a4aSRandall Stewart memcpy(ptr, &aa->ap, p_length); 2117f8829a4aSRandall Stewart 2118f8829a4aSRandall Stewart /* network elements and update lengths */ 2119f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)ptr; 2120f8829a4aSRandall Stewart aap = (struct sctp_asconf_addr_param *)ptr; 2121f8829a4aSRandall Stewart /* correlation_id is transparent to peer, no htonl needed */ 2122f8829a4aSRandall Stewart aph->ph.param_type = htons(aph->ph.param_type); 2123f8829a4aSRandall Stewart aph->ph.param_length = htons(aph->ph.param_length); 2124f8829a4aSRandall Stewart aap->addrp.ph.param_type = htons(aap->addrp.ph.param_type); 2125f8829a4aSRandall Stewart aap->addrp.ph.param_length = htons(aap->addrp.ph.param_length); 2126f8829a4aSRandall Stewart 2127139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf) += SCTP_SIZE32(p_length); 2128f8829a4aSRandall Stewart ptr += SCTP_SIZE32(p_length); 2129f8829a4aSRandall Stewart 2130f8829a4aSRandall Stewart /* 2131f8829a4aSRandall Stewart * these params are removed off the pending list upon 2132f8829a4aSRandall Stewart * getting an ASCONF-ACK back from the peer, just set flag 2133f8829a4aSRandall Stewart */ 2134f8829a4aSRandall Stewart aa->sent = 1; 2135f8829a4aSRandall Stewart } 2136f8829a4aSRandall Stewart /* check to see if the lookup addr has been populated yet */ 2137f8829a4aSRandall Stewart if (lookup_used == 0) { 2138f8829a4aSRandall Stewart /* NOTE: if the address param is optional, can skip this... */ 2139f8829a4aSRandall Stewart /* add any valid (existing) address... */ 2140f8829a4aSRandall Stewart struct sctp_ipv6addr_param *lookup; 2141f8829a4aSRandall Stewart uint16_t p_size, addr_size; 2142f8829a4aSRandall Stewart struct sockaddr *found_addr; 2143f8829a4aSRandall Stewart caddr_t addr_ptr; 2144f8829a4aSRandall Stewart 2145f8829a4aSRandall Stewart if (stcb->sctp_ep->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) 2146f8829a4aSRandall Stewart found_addr = sctp_find_valid_localaddr(stcb); 2147f8829a4aSRandall Stewart else 2148f8829a4aSRandall Stewart found_addr = sctp_find_valid_localaddr_ep(stcb); 2149f8829a4aSRandall Stewart 2150f8829a4aSRandall Stewart lookup = (struct sctp_ipv6addr_param *)lookup_ptr; 2151f8829a4aSRandall Stewart if (found_addr != NULL) { 2152f8829a4aSRandall Stewart if (found_addr->sa_family == AF_INET6) { 2153f8829a4aSRandall Stewart /* copy IPv6 address */ 2154f8829a4aSRandall Stewart lookup->ph.param_type = 2155f8829a4aSRandall Stewart htons(SCTP_IPV6_ADDRESS); 2156f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv6addr_param); 2157f8829a4aSRandall Stewart addr_size = sizeof(struct in6_addr); 2158f8829a4aSRandall Stewart addr_ptr = (caddr_t)&((struct sockaddr_in6 *) 2159f8829a4aSRandall Stewart found_addr)->sin6_addr; 2160f8829a4aSRandall Stewart } else { 2161f8829a4aSRandall Stewart /* copy IPv4 address */ 2162f8829a4aSRandall Stewart lookup->ph.param_type = 2163f8829a4aSRandall Stewart htons(SCTP_IPV4_ADDRESS); 2164f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv4addr_param); 2165f8829a4aSRandall Stewart addr_size = sizeof(struct in_addr); 2166f8829a4aSRandall Stewart addr_ptr = (caddr_t)&((struct sockaddr_in *) 2167f8829a4aSRandall Stewart found_addr)->sin_addr; 2168f8829a4aSRandall Stewart } 2169f8829a4aSRandall Stewart lookup->ph.param_length = htons(SCTP_SIZE32(p_size)); 2170f8829a4aSRandall Stewart memcpy(lookup->addr, addr_ptr, addr_size); 2171139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) += SCTP_SIZE32(p_size); 2172f8829a4aSRandall Stewart lookup_used = 1; 2173f8829a4aSRandall Stewart } else { 2174f8829a4aSRandall Stewart /* uh oh... don't have any address?? */ 2175ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2176ad81507eSRandall Stewart "compose_asconf: no lookup addr!\n"); 2177f8829a4aSRandall Stewart /* for now, we send a IPv4 address of 0.0.0.0 */ 2178f8829a4aSRandall Stewart lookup->ph.param_type = htons(SCTP_IPV4_ADDRESS); 2179f8829a4aSRandall Stewart lookup->ph.param_length = htons(SCTP_SIZE32(sizeof(struct sctp_ipv4addr_param))); 2180f8829a4aSRandall Stewart bzero(lookup->addr, sizeof(struct in_addr)); 2181139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) += SCTP_SIZE32(sizeof(struct sctp_ipv4addr_param)); 2182f8829a4aSRandall Stewart lookup_used = 1; 2183f8829a4aSRandall Stewart } 2184f8829a4aSRandall Stewart } 2185f8829a4aSRandall Stewart /* chain it all together */ 2186139bc87fSRandall Stewart SCTP_BUF_NEXT(m_asconf_chk) = m_asconf; 21873c503c28SRandall Stewart *retlen = SCTP_BUF_LEN(m_asconf_chk) + SCTP_BUF_LEN(m_asconf); 21883c503c28SRandall Stewart acp->ch.chunk_length = ntohs(*retlen); 2189f8829a4aSRandall Stewart 2190f8829a4aSRandall Stewart /* update "sent" flag */ 2191f8829a4aSRandall Stewart stcb->asoc.asconf_sent++; 2192f8829a4aSRandall Stewart 2193f8829a4aSRandall Stewart return (m_asconf_chk); 2194f8829a4aSRandall Stewart } 2195f8829a4aSRandall Stewart 2196f8829a4aSRandall Stewart /* 2197f8829a4aSRandall Stewart * section to handle address changes before an association is up eg. changes 2198f8829a4aSRandall Stewart * during INIT/INIT-ACK/COOKIE-ECHO handshake 2199f8829a4aSRandall Stewart */ 2200f8829a4aSRandall Stewart 2201f8829a4aSRandall Stewart /* 2202f8829a4aSRandall Stewart * processes the (local) addresses in the INIT-ACK chunk 2203f8829a4aSRandall Stewart */ 2204f8829a4aSRandall Stewart static void 2205f8829a4aSRandall Stewart sctp_process_initack_addresses(struct sctp_tcb *stcb, struct mbuf *m, 2206f8829a4aSRandall Stewart unsigned int offset, unsigned int length) 2207f8829a4aSRandall Stewart { 2208f8829a4aSRandall Stewart struct sctp_paramhdr tmp_param, *ph; 2209f8829a4aSRandall Stewart uint16_t plen, ptype; 221042551e99SRandall Stewart struct sctp_ifa *sctp_ifa; 2211f8829a4aSRandall Stewart struct sctp_ipv6addr_param addr_store; 2212f8829a4aSRandall Stewart struct sockaddr_in6 sin6; 2213f8829a4aSRandall Stewart struct sockaddr_in sin; 2214f8829a4aSRandall Stewart struct sockaddr *sa; 221542551e99SRandall Stewart uint32_t vrf_id; 2216f8829a4aSRandall Stewart 2217ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, "processing init-ack addresses\n"); 2218ad81507eSRandall Stewart if (stcb == NULL) /* Un-needed check for SA */ 2219ad81507eSRandall Stewart return; 2220f8829a4aSRandall Stewart 2221f8829a4aSRandall Stewart /* convert to upper bound */ 2222f8829a4aSRandall Stewart length += offset; 2223f8829a4aSRandall Stewart 2224f8829a4aSRandall Stewart if ((offset + sizeof(struct sctp_paramhdr)) > length) { 2225f8829a4aSRandall Stewart return; 2226f8829a4aSRandall Stewart } 2227f8829a4aSRandall Stewart /* init the addresses */ 2228f8829a4aSRandall Stewart bzero(&sin6, sizeof(sin6)); 2229f8829a4aSRandall Stewart sin6.sin6_family = AF_INET6; 2230f8829a4aSRandall Stewart sin6.sin6_len = sizeof(sin6); 2231f8829a4aSRandall Stewart sin6.sin6_port = stcb->rport; 2232f8829a4aSRandall Stewart 2233f8829a4aSRandall Stewart bzero(&sin, sizeof(sin)); 2234f8829a4aSRandall Stewart sin.sin_len = sizeof(sin); 2235f8829a4aSRandall Stewart sin.sin_family = AF_INET; 2236f8829a4aSRandall Stewart sin.sin_port = stcb->rport; 2237f8829a4aSRandall Stewart 2238f8829a4aSRandall Stewart /* go through the addresses in the init-ack */ 2239f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)sctp_m_getptr(m, offset, 2240f8829a4aSRandall Stewart sizeof(struct sctp_paramhdr), (uint8_t *) & tmp_param); 2241f8829a4aSRandall Stewart while (ph != NULL) { 2242f8829a4aSRandall Stewart ptype = ntohs(ph->param_type); 2243f8829a4aSRandall Stewart plen = ntohs(ph->param_length); 2244f8829a4aSRandall Stewart if (ptype == SCTP_IPV6_ADDRESS) { 2245f8829a4aSRandall Stewart struct sctp_ipv6addr_param *a6p; 2246f8829a4aSRandall Stewart 2247f8829a4aSRandall Stewart /* get the entire IPv6 address param */ 2248f8829a4aSRandall Stewart a6p = (struct sctp_ipv6addr_param *) 2249f8829a4aSRandall Stewart sctp_m_getptr(m, offset, 2250f8829a4aSRandall Stewart sizeof(struct sctp_ipv6addr_param), 2251f8829a4aSRandall Stewart (uint8_t *) & addr_store); 2252f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv6addr_param) || 2253f8829a4aSRandall Stewart a6p == NULL) { 2254f8829a4aSRandall Stewart return; 2255f8829a4aSRandall Stewart } 2256f8829a4aSRandall Stewart memcpy(&sin6.sin6_addr, a6p->addr, 2257f8829a4aSRandall Stewart sizeof(struct in6_addr)); 2258f8829a4aSRandall Stewart sa = (struct sockaddr *)&sin6; 2259f8829a4aSRandall Stewart } else if (ptype == SCTP_IPV4_ADDRESS) { 2260f8829a4aSRandall Stewart struct sctp_ipv4addr_param *a4p; 2261f8829a4aSRandall Stewart 2262f8829a4aSRandall Stewart /* get the entire IPv4 address param */ 226342551e99SRandall Stewart a4p = (struct sctp_ipv4addr_param *)sctp_m_getptr(m, offset, 226442551e99SRandall Stewart sizeof(struct sctp_ipv4addr_param), 226542551e99SRandall Stewart (uint8_t *) & addr_store); 2266f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv4addr_param) || 2267f8829a4aSRandall Stewart a4p == NULL) { 2268f8829a4aSRandall Stewart return; 2269f8829a4aSRandall Stewart } 2270f8829a4aSRandall Stewart sin.sin_addr.s_addr = a4p->addr; 2271f8829a4aSRandall Stewart sa = (struct sockaddr *)&sin; 2272f8829a4aSRandall Stewart } else { 2273f8829a4aSRandall Stewart goto next_addr; 2274f8829a4aSRandall Stewart } 2275f8829a4aSRandall Stewart 2276f8829a4aSRandall Stewart /* see if this address really (still) exists */ 2277bff64a4dSRandall Stewart if (stcb) { 2278bff64a4dSRandall Stewart vrf_id = stcb->asoc.vrf_id; 2279bff64a4dSRandall Stewart } else { 228042551e99SRandall Stewart vrf_id = SCTP_DEFAULT_VRFID; 2281bff64a4dSRandall Stewart } 2282bff64a4dSRandall Stewart 228342551e99SRandall Stewart sctp_ifa = sctp_find_ifa_by_addr(sa, vrf_id, 0); 228442551e99SRandall Stewart if (sctp_ifa == NULL) { 2285f8829a4aSRandall Stewart /* address doesn't exist anymore */ 2286f8829a4aSRandall Stewart int status; 2287f8829a4aSRandall Stewart 2288f8829a4aSRandall Stewart /* are ASCONFs allowed ? */ 2289f8829a4aSRandall Stewart if ((sctp_is_feature_on(stcb->sctp_ep, 2290f8829a4aSRandall Stewart SCTP_PCB_FLAGS_DO_ASCONF)) && 2291f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf) { 2292f8829a4aSRandall Stewart /* queue an ASCONF DEL_IP_ADDRESS */ 2293f8829a4aSRandall Stewart status = sctp_asconf_queue_add_sa(stcb, sa, 2294f8829a4aSRandall Stewart SCTP_DEL_IP_ADDRESS); 2295f8829a4aSRandall Stewart /* 2296f8829a4aSRandall Stewart * if queued ok, and in correct state, set 2297f8829a4aSRandall Stewart * the ASCONF timer 2298f8829a4aSRandall Stewart */ 2299f8829a4aSRandall Stewart if (status == 0 && 2300f8829a4aSRandall Stewart SCTP_GET_STATE(&stcb->asoc) == 2301f8829a4aSRandall Stewart SCTP_STATE_OPEN) { 2302f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, 2303f8829a4aSRandall Stewart stcb->sctp_ep, stcb, 2304f8829a4aSRandall Stewart stcb->asoc.primary_destination); 2305f8829a4aSRandall Stewart } 2306f8829a4aSRandall Stewart } 2307f8829a4aSRandall Stewart } 2308f8829a4aSRandall Stewart next_addr: 2309f8829a4aSRandall Stewart /* 2310f8829a4aSRandall Stewart * Sanity check: Make sure the length isn't 0, otherwise 2311f8829a4aSRandall Stewart * we'll be stuck in this loop for a long time... 2312f8829a4aSRandall Stewart */ 2313f8829a4aSRandall Stewart if (SCTP_SIZE32(plen) == 0) { 2314ad81507eSRandall Stewart SCTP_PRINTF("process_initack_addrs: bad len (%d) type=%xh\n", 2315f8829a4aSRandall Stewart plen, ptype); 2316f8829a4aSRandall Stewart return; 2317f8829a4aSRandall Stewart } 2318f8829a4aSRandall Stewart /* get next parameter */ 2319f8829a4aSRandall Stewart offset += SCTP_SIZE32(plen); 2320f8829a4aSRandall Stewart if ((offset + sizeof(struct sctp_paramhdr)) > length) 2321f8829a4aSRandall Stewart return; 2322f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)sctp_m_getptr(m, offset, 2323f8829a4aSRandall Stewart sizeof(struct sctp_paramhdr), (uint8_t *) & tmp_param); 2324f8829a4aSRandall Stewart } /* while */ 2325f8829a4aSRandall Stewart } 2326f8829a4aSRandall Stewart 2327f8829a4aSRandall Stewart /* FIX ME: need to verify return result for v6 address type if v6 disabled */ 2328f8829a4aSRandall Stewart /* 2329f8829a4aSRandall Stewart * checks to see if a specific address is in the initack address list returns 2330f8829a4aSRandall Stewart * 1 if found, 0 if not 2331f8829a4aSRandall Stewart */ 2332f8829a4aSRandall Stewart static uint32_t 2333f8829a4aSRandall Stewart sctp_addr_in_initack(struct sctp_tcb *stcb, struct mbuf *m, uint32_t offset, 2334f8829a4aSRandall Stewart uint32_t length, struct sockaddr *sa) 2335f8829a4aSRandall Stewart { 2336f8829a4aSRandall Stewart struct sctp_paramhdr tmp_param, *ph; 2337f8829a4aSRandall Stewart uint16_t plen, ptype; 2338f8829a4aSRandall Stewart struct sctp_ipv6addr_param addr_store; 2339f8829a4aSRandall Stewart struct sockaddr_in *sin; 2340f8829a4aSRandall Stewart struct sctp_ipv4addr_param *a4p; 2341f8829a4aSRandall Stewart 2342f8829a4aSRandall Stewart #ifdef INET6 234342551e99SRandall Stewart struct sockaddr_in6 *sin6; 2344f8829a4aSRandall Stewart struct sctp_ipv6addr_param *a6p; 234542551e99SRandall Stewart struct sockaddr_in6 sin6_tmp; 2346f8829a4aSRandall Stewart 2347f8829a4aSRandall Stewart #endif /* INET6 */ 2348f8829a4aSRandall Stewart 2349f8829a4aSRandall Stewart if ( 2350f8829a4aSRandall Stewart #ifdef INET6 2351f8829a4aSRandall Stewart (sa->sa_family != AF_INET6) && 2352f8829a4aSRandall Stewart #endif /* INET6 */ 2353f8829a4aSRandall Stewart (sa->sa_family != AF_INET)) 2354f8829a4aSRandall Stewart return (0); 2355f8829a4aSRandall Stewart 2356ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, "find_initack_addr: starting search for "); 2357ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 2358f8829a4aSRandall Stewart /* convert to upper bound */ 2359f8829a4aSRandall Stewart length += offset; 2360f8829a4aSRandall Stewart 2361f8829a4aSRandall Stewart if ((offset + sizeof(struct sctp_paramhdr)) > length) { 2362ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2363ad81507eSRandall Stewart "find_initack_addr: invalid offset?\n"); 2364f8829a4aSRandall Stewart return (0); 2365f8829a4aSRandall Stewart } 2366f8829a4aSRandall Stewart /* go through the addresses in the init-ack */ 2367f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)sctp_m_getptr(m, offset, 2368f8829a4aSRandall Stewart sizeof(struct sctp_paramhdr), (uint8_t *) & tmp_param); 2369f8829a4aSRandall Stewart while (ph != NULL) { 2370f8829a4aSRandall Stewart ptype = ntohs(ph->param_type); 2371f8829a4aSRandall Stewart plen = ntohs(ph->param_length); 2372f8829a4aSRandall Stewart #ifdef INET6 2373f8829a4aSRandall Stewart if (ptype == SCTP_IPV6_ADDRESS && sa->sa_family == AF_INET6) { 2374f8829a4aSRandall Stewart /* get the entire IPv6 address param */ 2375f8829a4aSRandall Stewart a6p = (struct sctp_ipv6addr_param *) 2376f8829a4aSRandall Stewart sctp_m_getptr(m, offset, 2377f8829a4aSRandall Stewart sizeof(struct sctp_ipv6addr_param), 2378f8829a4aSRandall Stewart (uint8_t *) & addr_store); 2379f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv6addr_param) || 2380ad81507eSRandall Stewart (ph == NULL) || 2381ad81507eSRandall Stewart (a6p == NULL)) { 2382f8829a4aSRandall Stewart return (0); 2383f8829a4aSRandall Stewart } 2384f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 2385f8829a4aSRandall Stewart if (IN6_IS_SCOPE_LINKLOCAL(&sin6->sin6_addr)) { 2386f8829a4aSRandall Stewart /* create a copy and clear scope */ 2387f8829a4aSRandall Stewart memcpy(&sin6_tmp, sin6, 2388f8829a4aSRandall Stewart sizeof(struct sockaddr_in6)); 2389f8829a4aSRandall Stewart sin6 = &sin6_tmp; 2390f8829a4aSRandall Stewart in6_clearscope(&sin6->sin6_addr); 2391f8829a4aSRandall Stewart } 2392f8829a4aSRandall Stewart if (memcmp(&sin6->sin6_addr, a6p->addr, 2393f8829a4aSRandall Stewart sizeof(struct in6_addr)) == 0) { 2394f8829a4aSRandall Stewart /* found it */ 2395f8829a4aSRandall Stewart return (1); 2396f8829a4aSRandall Stewart } 2397f8829a4aSRandall Stewart } else 2398f8829a4aSRandall Stewart #endif /* INET6 */ 2399f8829a4aSRandall Stewart 2400f8829a4aSRandall Stewart if (ptype == SCTP_IPV4_ADDRESS && 2401f8829a4aSRandall Stewart sa->sa_family == AF_INET) { 2402f8829a4aSRandall Stewart /* get the entire IPv4 address param */ 2403f8829a4aSRandall Stewart a4p = (struct sctp_ipv4addr_param *)sctp_m_getptr(m, 2404f8829a4aSRandall Stewart offset, sizeof(struct sctp_ipv4addr_param), 2405f8829a4aSRandall Stewart (uint8_t *) & addr_store); 2406f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv4addr_param) || 2407ad81507eSRandall Stewart (ph == NULL) || 2408ad81507eSRandall Stewart (a4p == NULL)) { 2409f8829a4aSRandall Stewart return (0); 2410f8829a4aSRandall Stewart } 2411f8829a4aSRandall Stewart sin = (struct sockaddr_in *)sa; 2412f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == a4p->addr) { 2413f8829a4aSRandall Stewart /* found it */ 2414f8829a4aSRandall Stewart return (1); 2415f8829a4aSRandall Stewart } 2416f8829a4aSRandall Stewart } 2417f8829a4aSRandall Stewart /* get next parameter */ 2418f8829a4aSRandall Stewart offset += SCTP_SIZE32(plen); 2419f8829a4aSRandall Stewart if (offset + sizeof(struct sctp_paramhdr) > length) 2420f8829a4aSRandall Stewart return (0); 2421f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *) 2422f8829a4aSRandall Stewart sctp_m_getptr(m, offset, sizeof(struct sctp_paramhdr), 2423f8829a4aSRandall Stewart (uint8_t *) & tmp_param); 2424f8829a4aSRandall Stewart } /* while */ 2425f8829a4aSRandall Stewart /* not found! */ 2426f8829a4aSRandall Stewart return (0); 2427f8829a4aSRandall Stewart } 2428f8829a4aSRandall Stewart 2429f8829a4aSRandall Stewart /* 2430f8829a4aSRandall Stewart * makes sure that the current endpoint local addr list is consistent with 2431f8829a4aSRandall Stewart * the new association (eg. subset bound, asconf allowed) adds addresses as 2432f8829a4aSRandall Stewart * necessary 2433f8829a4aSRandall Stewart */ 2434f8829a4aSRandall Stewart static void 2435f8829a4aSRandall Stewart sctp_check_address_list_ep(struct sctp_tcb *stcb, struct mbuf *m, int offset, 2436f8829a4aSRandall Stewart int length, struct sockaddr *init_addr) 2437f8829a4aSRandall Stewart { 2438f8829a4aSRandall Stewart struct sctp_laddr *laddr; 2439f8829a4aSRandall Stewart 2440f8829a4aSRandall Stewart /* go through the endpoint list */ 2441f8829a4aSRandall Stewart LIST_FOREACH(laddr, &stcb->sctp_ep->sctp_addr_list, sctp_nxt_addr) { 2442f8829a4aSRandall Stewart /* be paranoid and validate the laddr */ 2443f8829a4aSRandall Stewart if (laddr->ifa == NULL) { 2444ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2445ad81507eSRandall Stewart "check_addr_list_ep: laddr->ifa is NULL"); 2446f8829a4aSRandall Stewart continue; 2447f8829a4aSRandall Stewart } 244842551e99SRandall Stewart if (laddr->ifa == NULL) { 2449ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "check_addr_list_ep: laddr->ifa->ifa_addr is NULL"); 2450f8829a4aSRandall Stewart continue; 2451f8829a4aSRandall Stewart } 2452f8829a4aSRandall Stewart /* do i have it implicitly? */ 245342551e99SRandall Stewart if (sctp_cmpaddr(&laddr->ifa->address.sa, init_addr)) { 2454f8829a4aSRandall Stewart continue; 2455f8829a4aSRandall Stewart } 2456f8829a4aSRandall Stewart /* check to see if in the init-ack */ 2457f8829a4aSRandall Stewart if (!sctp_addr_in_initack(stcb, m, offset, length, 245842551e99SRandall Stewart &laddr->ifa->address.sa)) { 2459f8829a4aSRandall Stewart /* try to add it */ 2460f8829a4aSRandall Stewart sctp_addr_mgmt_assoc(stcb->sctp_ep, stcb, laddr->ifa, 2461f8829a4aSRandall Stewart SCTP_ADD_IP_ADDRESS); 2462f8829a4aSRandall Stewart } 2463f8829a4aSRandall Stewart } 2464f8829a4aSRandall Stewart } 2465f8829a4aSRandall Stewart 2466f8829a4aSRandall Stewart /* 2467f8829a4aSRandall Stewart * makes sure that the current kernel address list is consistent with the new 2468f8829a4aSRandall Stewart * association (with all addrs bound) adds addresses as necessary 2469f8829a4aSRandall Stewart */ 2470f8829a4aSRandall Stewart static void 2471f8829a4aSRandall Stewart sctp_check_address_list_all(struct sctp_tcb *stcb, struct mbuf *m, int offset, 2472f8829a4aSRandall Stewart int length, struct sockaddr *init_addr, 2473f8829a4aSRandall Stewart uint16_t local_scope, uint16_t site_scope, 2474f8829a4aSRandall Stewart uint16_t ipv4_scope, uint16_t loopback_scope) 2475f8829a4aSRandall Stewart { 247642551e99SRandall Stewart struct sctp_vrf *vrf = NULL; 247742551e99SRandall Stewart struct sctp_ifn *sctp_ifn; 247842551e99SRandall Stewart struct sctp_ifa *sctp_ifa; 247942551e99SRandall Stewart uint32_t vrf_id; 2480f8829a4aSRandall Stewart 2481bff64a4dSRandall Stewart if (stcb) { 2482bff64a4dSRandall Stewart vrf_id = stcb->asoc.vrf_id; 2483bff64a4dSRandall Stewart } else { 2484ad81507eSRandall Stewart return; 2485bff64a4dSRandall Stewart } 248642551e99SRandall Stewart vrf = sctp_find_vrf(vrf_id); 248742551e99SRandall Stewart if (vrf == NULL) { 248842551e99SRandall Stewart return; 248942551e99SRandall Stewart } 2490f8829a4aSRandall Stewart /* go through all our known interfaces */ 249142551e99SRandall Stewart LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) { 249242551e99SRandall Stewart if (loopback_scope == 0 && SCTP_IFN_IS_IFT_LOOP(sctp_ifn)) { 2493f8829a4aSRandall Stewart /* skip loopback interface */ 2494f8829a4aSRandall Stewart continue; 2495f8829a4aSRandall Stewart } 2496f8829a4aSRandall Stewart /* go through each interface address */ 249742551e99SRandall Stewart LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) { 2498f8829a4aSRandall Stewart /* do i have it implicitly? */ 249942551e99SRandall Stewart if (sctp_cmpaddr(&sctp_ifa->address.sa, init_addr)) { 2500f8829a4aSRandall Stewart continue; 2501f8829a4aSRandall Stewart } 2502f8829a4aSRandall Stewart /* check to see if in the init-ack */ 2503f8829a4aSRandall Stewart if (!sctp_addr_in_initack(stcb, m, offset, length, 250442551e99SRandall Stewart &sctp_ifa->address.sa)) { 2505f8829a4aSRandall Stewart /* try to add it */ 2506f8829a4aSRandall Stewart sctp_addr_mgmt_assoc(stcb->sctp_ep, stcb, 250742551e99SRandall Stewart sctp_ifa, SCTP_ADD_IP_ADDRESS); 2508f8829a4aSRandall Stewart } 2509f8829a4aSRandall Stewart } /* end foreach ifa */ 2510f8829a4aSRandall Stewart } /* end foreach ifn */ 2511f8829a4aSRandall Stewart } 2512f8829a4aSRandall Stewart 2513f8829a4aSRandall Stewart /* 2514f8829a4aSRandall Stewart * validates an init-ack chunk (from a cookie-echo) with current addresses 2515f8829a4aSRandall Stewart * adds addresses from the init-ack into our local address list, if needed 2516f8829a4aSRandall Stewart * queues asconf adds/deletes addresses as needed and makes appropriate list 2517f8829a4aSRandall Stewart * changes for source address selection m, offset: points to the start of the 2518f8829a4aSRandall Stewart * address list in an init-ack chunk length: total length of the address 2519f8829a4aSRandall Stewart * params only init_addr: address where my INIT-ACK was sent from 2520f8829a4aSRandall Stewart */ 2521f8829a4aSRandall Stewart void 2522f8829a4aSRandall Stewart sctp_check_address_list(struct sctp_tcb *stcb, struct mbuf *m, int offset, 2523f8829a4aSRandall Stewart int length, struct sockaddr *init_addr, 2524f8829a4aSRandall Stewart uint16_t local_scope, uint16_t site_scope, 2525f8829a4aSRandall Stewart uint16_t ipv4_scope, uint16_t loopback_scope) 2526f8829a4aSRandall Stewart { 2527f8829a4aSRandall Stewart /* process the local addresses in the initack */ 2528f8829a4aSRandall Stewart sctp_process_initack_addresses(stcb, m, offset, length); 2529f8829a4aSRandall Stewart 2530f8829a4aSRandall Stewart if (stcb->sctp_ep->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) { 2531f8829a4aSRandall Stewart /* bound all case */ 2532f8829a4aSRandall Stewart sctp_check_address_list_all(stcb, m, offset, length, init_addr, 2533f8829a4aSRandall Stewart local_scope, site_scope, ipv4_scope, loopback_scope); 2534f8829a4aSRandall Stewart } else { 2535f8829a4aSRandall Stewart /* subset bound case */ 2536f8829a4aSRandall Stewart if (sctp_is_feature_on(stcb->sctp_ep, 2537f8829a4aSRandall Stewart SCTP_PCB_FLAGS_DO_ASCONF)) { 2538f8829a4aSRandall Stewart /* asconf's allowed */ 2539f8829a4aSRandall Stewart sctp_check_address_list_ep(stcb, m, offset, length, 2540f8829a4aSRandall Stewart init_addr); 2541f8829a4aSRandall Stewart } 2542f8829a4aSRandall Stewart /* else, no asconfs allowed, so what we sent is what we get */ 2543f8829a4aSRandall Stewart } 2544f8829a4aSRandall Stewart } 2545f8829a4aSRandall Stewart 2546f8829a4aSRandall Stewart /* 2547f8829a4aSRandall Stewart * sctp_bindx() support 2548f8829a4aSRandall Stewart */ 2549f8829a4aSRandall Stewart uint32_t 25503c503c28SRandall Stewart sctp_addr_mgmt_ep_sa(struct sctp_inpcb *inp, struct sockaddr *sa, 255180fefe0aSRandall Stewart uint32_t type, uint32_t vrf_id, struct sctp_ifa *sctp_ifap) 2552f8829a4aSRandall Stewart { 255342551e99SRandall Stewart struct sctp_ifa *ifa; 2554f8829a4aSRandall Stewart 255542551e99SRandall Stewart if (sa->sa_len == 0) { 2556f8829a4aSRandall Stewart return (EINVAL); 255742551e99SRandall Stewart } 255880fefe0aSRandall Stewart if (sctp_ifap) { 255980fefe0aSRandall Stewart ifa = sctp_ifap; 256080fefe0aSRandall Stewart } else if (type == SCTP_ADD_IP_ADDRESS) { 256142551e99SRandall Stewart /* For an add the address MUST be on the system */ 256242551e99SRandall Stewart ifa = sctp_find_ifa_by_addr(sa, vrf_id, 0); 256342551e99SRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS) { 256442551e99SRandall Stewart /* For a delete we need to find it in the inp */ 256542551e99SRandall Stewart ifa = sctp_find_ifa_in_ep(inp, sa, 0); 256642551e99SRandall Stewart } else { 256742551e99SRandall Stewart ifa = NULL; 256842551e99SRandall Stewart } 2569f8829a4aSRandall Stewart if (ifa != NULL) { 2570f8829a4aSRandall Stewart /* add this address */ 257142551e99SRandall Stewart struct sctp_asconf_iterator *asc; 257242551e99SRandall Stewart struct sctp_laddr *wi; 257342551e99SRandall Stewart 257442551e99SRandall Stewart SCTP_MALLOC(asc, struct sctp_asconf_iterator *, 25753c503c28SRandall Stewart sizeof(struct sctp_asconf_iterator), 2576207304d4SRandall Stewart SCTP_M_ASC_IT); 257742551e99SRandall Stewart if (asc == NULL) { 257842551e99SRandall Stewart return (ENOMEM); 257942551e99SRandall Stewart } 25803c503c28SRandall Stewart wi = SCTP_ZONE_GET(sctppcbinfo.ipi_zone_laddr, 25813c503c28SRandall Stewart struct sctp_laddr); 258242551e99SRandall Stewart if (wi == NULL) { 2583207304d4SRandall Stewart SCTP_FREE(asc, SCTP_M_ASC_IT); 258442551e99SRandall Stewart return (ENOMEM); 258542551e99SRandall Stewart } 258642551e99SRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 258742551e99SRandall Stewart sctp_add_local_addr_ep(inp, ifa, type); 258842551e99SRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS) { 258942551e99SRandall Stewart struct sctp_laddr *laddr; 259042551e99SRandall Stewart 25913c503c28SRandall Stewart if (inp->laddr_count < 2) { 25923c503c28SRandall Stewart /* can't delete the last local address */ 25933c503c28SRandall Stewart return (EINVAL); 25943c503c28SRandall Stewart } 25953c503c28SRandall Stewart LIST_FOREACH(laddr, &inp->sctp_addr_list, 25963c503c28SRandall Stewart sctp_nxt_addr) { 259742551e99SRandall Stewart if (ifa == laddr->ifa) { 259842551e99SRandall Stewart /* Mark in the delete */ 259942551e99SRandall Stewart laddr->action = type; 260042551e99SRandall Stewart } 260142551e99SRandall Stewart } 260242551e99SRandall Stewart } 260342551e99SRandall Stewart LIST_INIT(&asc->list_of_work); 260442551e99SRandall Stewart asc->cnt = 1; 260542551e99SRandall Stewart SCTP_INCR_LADDR_COUNT(); 260642551e99SRandall Stewart wi->ifa = ifa; 260742551e99SRandall Stewart wi->action = type; 260842551e99SRandall Stewart atomic_add_int(&ifa->refcount, 1); 260942551e99SRandall Stewart LIST_INSERT_HEAD(&asc->list_of_work, wi, sctp_nxt_addr); 2610ad81507eSRandall Stewart (void)sctp_initiate_iterator(sctp_iterator_ep, 261142551e99SRandall Stewart sctp_iterator_stcb, 261242551e99SRandall Stewart sctp_iterator_ep_end, 261342551e99SRandall Stewart SCTP_PCB_ANY_FLAGS, 26143c503c28SRandall Stewart SCTP_PCB_ANY_FEATURES, 26153c503c28SRandall Stewart SCTP_ASOC_ANY_STATE, (void *)asc, 0, 261642551e99SRandall Stewart sctp_iterator_end, inp, 0); 2617f8829a4aSRandall Stewart } else { 2618f8829a4aSRandall Stewart /* invalid address! */ 2619f8829a4aSRandall Stewart return (EADDRNOTAVAIL); 2620f8829a4aSRandall Stewart } 2621f8829a4aSRandall Stewart return (0); 2622f8829a4aSRandall Stewart } 2623